CVE-2016-0242: Infoleak
Published Oct 22, 2016
·Updated
IBM Security Guardium 10.x through 10.1 before p100 allows remote authenticated users to obtain sensitive information by reading an Application Error message.
Affected Software
3 affected components
IBM Security Guardium=10.0
IBM Security Guardium=10.1
IBM Security Guardium=10.01
Remediation
Patch Available
Event History
Oct 22, 2016
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-0242?
CVE-2016-0242 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
2
How do I fix CVE-2016-0242?
To mitigate CVE-2016-0242, upgrade IBM Security Guardium to version 10.1 p100 or later.
3
What type of attack does CVE-2016-0242 enable?
CVE-2016-0242 allows remote authenticated users to gain sensitive information through application error messages.
4
Is CVE-2016-0242 limited to a specific version of IBM Security Guardium?
Yes, CVE-2016-0242 affects IBM Security Guardium versions 10.0 to 10.1 before p100.
5
Who is affected by CVE-2016-0242?
Remote authenticated users of IBM Security Guardium 10.x before p100 are affected by CVE-2016-0242.