CVE-2015-7438: Infoleak
Published Jan 2, 2016
·Updated
IBM Sterling B2B Integrator 5.2 allows local users to obtain sensitive cleartext web-services information by leveraging database access.
Affected Software
1 affected component
IBM Sterling B2B Integrator=5.2
Event History
Jan 2, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7438?
CVE-2015-7438 is categorized as a medium severity vulnerability.
2
How do I fix CVE-2015-7438?
To fix CVE-2015-7438, ensure that access to the database is properly restricted and apply any available security patches from IBM.
3
Who is affected by CVE-2015-7438?
CVE-2015-7438 affects local users of IBM Sterling B2B Integrator version 5.2 who have database access.
4
What type of information does CVE-2015-7438 expose?
CVE-2015-7438 allows local users to obtain sensitive cleartext web-services information from the database.
5
Is CVE-2015-7438 a local or remote vulnerability?
CVE-2015-7438 is classified as a local vulnerability, requiring local user access to exploit.