CVE-2017-1340: Infoleak
Published Nov 1, 2017
·Updated
IBM Jazz Reporting Service (JRS) 6.0.4 could allow an authenticated user to obtain information on another server that the current report builder interacts with. IBM X-Force ID: 126455.
Affected Software
1 affected component
IBM Jazz Reporting Service=6.0.4
Remediation
Patch Available
Event History
Nov 1, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1340?
CVE-2017-1340 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2017-1340?
To resolve CVE-2017-1340, it is recommended to upgrade the IBM Jazz Reporting Service to the latest version.
3
Who is affected by CVE-2017-1340?
CVE-2017-1340 affects authenticated users of IBM Jazz Reporting Service version 6.0.4.
4
What type of vulnerability is CVE-2017-1340?
CVE-2017-1340 is an information disclosure vulnerability.
5
Can CVE-2017-1340 be exploited remotely?
CVE-2017-1340 requires authentication, meaning it cannot be exploited remotely without valid user credentials.