CVE-2015-4958: Infoleak
IBM InfoSphere Master Data Management - Collaborative Edition 9.1, 10.1, 11.0 before 11.0.0.0 IF11, 11.3 before 11.3.0.0 IF7, and 11.4 before 11.4.0.4 IF1 does not properly restrict browser caching, which allows local users to obtain sensitive information by reading cache files.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4958?
CVE-2015-4958 has a medium severity due to improper browser caching that can expose sensitive information.
How do I fix CVE-2015-4958?
To fix CVE-2015-4958, you should apply the appropriate security patches provided by IBM for your version of InfoSphere Master Data Management.
What versions are affected by CVE-2015-4958?
CVE-2015-4958 affects IBM InfoSphere Master Data Management versions 9.1, 10.1, 11.0 prior to 11.0.0.0 IF11, 11.3 prior to 11.3.0.0 IF7, and 11.4 prior to 11.4.0.4 IF1.
Who can exploit CVE-2015-4958?
CVE-2015-4958 can be exploited by local users who have access to the system where the browser cache is stored.
What information can be exposed due to CVE-2015-4958?
Due to CVE-2015-4958, sensitive information stored in cache files may be accessible to local users.