First published: Wed Feb 08 2017(Updated: )
IBM InfoSphere Information Server could allow a local user under special circumstances to execute commands during installation processes that could expose sensitive information.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Analyzer | =8.5 | |
IBM InfoSphere Information Analyzer | =8.7 | |
IBM InfoSphere Information Analyzer | =9.1 | |
IBM InfoSphere Information Analyzer | =11.3 | |
IBM InfoSphere Information Analyzer | =11.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-7493 is considered medium due to potential exposure of sensitive information.
To fix CVE-2015-7493, ensure you are using the latest version of IBM InfoSphere Information Server.
CVE-2015-7493 affects local users of IBM InfoSphere Information Server versions 8.5, 8.7, 9.1, 11.3, and 11.5.
An attacker with local access could exploit CVE-2015-7493 to execute commands and potentially access sensitive information.
Yes, IBM has released updates that address the vulnerabilities associated with CVE-2015-7493.