CVE-2017-1154: Infoleak
Published Mar 31, 2017
·Updated
IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to files in the local environment which should not be viewed by application users. IBM Reference #: 1999892.
Affected Software
3 affected components
IBM Algo One=4.9.1
IBM Algo One=5.0.0
IBM Algo One=5.1.0
Remediation
Patch Available
Event History
Mar 31, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Data Sourced
via NVD·06:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-1154?
CVE-2017-1154 has a moderate severity level, allowing unauthorized access to local files.
2
How do I fix CVE-2017-1154?
To fix CVE-2017-1154, upgrade to a patched version of IBM Algorithmics One-Algo Risk Application.
3
What versions of IBM Algorithmics are affected by CVE-2017-1154?
CVE-2017-1154 affects IBM Algorithmics One-Algo Risk Application versions 4.9.1, 5.0.0, and 5.1.0.
4
What types of files can be accessed due to CVE-2017-1154?
CVE-2017-1154 allows access to files in the local environment that should not be viewed by application users.
5
Is CVE-2017-1154 a serious vulnerability?
While CVE-2017-1154 is not classified as critical, it poses a risk by exposing sensitive information.