CVE-2017-1155: Infoleak
IBM Algorithmics One-Algo Risk Application 4.9.1, 5.0, and 5.1.0 could allow a user to gain access to another user's reports using a specially crafted HTTP request. IBM Reference #: 1999754.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1155?
CVE-2017-1155 has been classified with a moderate severity level, indicating the potential for unauthorized access to sensitive reports.
How do I fix CVE-2017-1155?
To address CVE-2017-1155, users should apply the latest security updates or patches provided by IBM for affected versions of the Algorithmics One-Algo Risk Application.
Which versions of IBM Algo One are affected by CVE-2017-1155?
CVE-2017-1155 affects IBM Algorithmics One-Algo Risk Application versions 4.9.1, 5.0.0, and 5.1.0.
What type of vulnerability is CVE-2017-1155?
CVE-2017-1155 is an unauthorized access vulnerability that allows users to gain access to reports of other users through manipulated HTTP requests.
Who reported CVE-2017-1155 to IBM?
CVE-2017-1155 was reported to IBM under reference number 1999754.