CVE-2015-0143: Infoleak
Published Oct 3, 2015
·Updated
IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote authenticated users to obtain sensitive information by reading error messages.
Affected Software
5 affected components
IBM OpenPages GRC Platform=6.2.0.0
IBM OpenPages GRC Platform=6.2.1.0
IBM OpenPages GRC Platform=6.2.1.1
IBM OpenPages GRC Platform=7.0.0.0
IBM OpenPages GRC Platform=7.1.0.0
Remediation
Patch Available
Event History
Oct 3, 2015
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0143?
The severity of CVE-2015-0143 is moderate, as it allows remote authenticated users to access sensitive information.
2
How do I fix CVE-2015-0143?
To fix CVE-2015-0143, upgrade to IBM OpenPages GRC Platform versions 6.2.1.1 IF5, 7.0 FP4, or 7.1 FP1 or later.
3
Which versions of IBM OpenPages GRC Platform are affected by CVE-2015-0143?
CVE-2015-0143 affects versions 6.2.0.0, 6.2.1.0, 7.0.0.0, and 7.1.0.0 of IBM OpenPages GRC Platform.
4
What type of vulnerability is CVE-2015-0143?
CVE-2015-0143 is an information disclosure vulnerability.
5
Who can exploit CVE-2015-0143?
CVE-2015-0143 can be exploited by remote authenticated users.