First published: Wed Feb 28 2018(Updated: )
IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote attackers to obtain sensitive information via vectors involving a database query. IBM X-Force ID: 111382.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM TRIRIGA Application Platform | >=3.3.0.0<3.3.2.6 | |
IBM TRIRIGA Application Platform | >=3.4.0.0<3.4.2.3 | |
IBM TRIRIGA Application Platform | =3.5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0299 has been classified as having a moderate severity level due to the potential exposure of sensitive information.
To fix CVE-2016-0299, upgrade IBM TRIRIGA Application Platform to version 3.3.2.6 or later, 3.4.2.3 or later, or 3.5.0.1 or later.
CVE-2016-0299 affects IBM TRIRIGA Application Platform versions prior to 3.3.2.6, 3.4.2.3, and 3.5.0.1.
CVE-2016-0299 is a data exposure vulnerability that allows attackers to exploit database queries.
There are no documented workarounds for CVE-2016-0299, and the recommended action is to apply the necessary software updates.