CVE-2014-4782: Infoleak
Published Apr 20, 2018
·Updated
IBM InfoSphere BigInsights 2.1.2 allows remote authenticated users to discover SMTP server credentials via vectors related to the Alert management service. IBM X-Force ID: 95029.
Affected Software
1 affected component
IBM Infosphere BigInsights=2.1.2
Remediation
Patch Available
Event History
Apr 20, 2018
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4782?
CVE-2014-4782 is classified as a medium severity vulnerability, allowing remote authenticated users to access SMTP server credentials.
2
How do I fix CVE-2014-4782?
To mitigate CVE-2014-4782, ensure that the configurations for the Alert management service in IBM InfoSphere BigInsights 2.1.2 are properly secured and restrict access to authenticated users only.
3
Who is affected by CVE-2014-4782?
CVE-2014-4782 affects users of IBM InfoSphere BigInsights version 2.1.2.
4
What type of vulnerability is CVE-2014-4782?
CVE-2014-4782 is a credential exposure vulnerability that allows information leakage of SMTP server credentials.
5
When was CVE-2014-4782 discovered?
CVE-2014-4782 was disclosed in 2014.