CVE-2018-1625: Infoleak
IBM Security Privileged Identity Manager Virtual Appliance 2.2.1 generates an error message that includes sensitive information about its environment, users, or associated data. IBM X-Force ID: 144410.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1625?
The severity of CVE-2018-1625 is classified as medium due to the inclusion of sensitive information in error messages.
How do I fix CVE-2018-1625?
To fix CVE-2018-1625, update the IBM Security Privileged Identity Manager to the latest version that addresses this vulnerability.
What systems are affected by CVE-2018-1625?
CVE-2018-1625 affects IBM Security Privileged Identity Manager version 2.1.1.
What type of information is exposed by CVE-2018-1625?
CVE-2018-1625 exposes sensitive environment details, user information, or associated data through its error messages.
Is there a known workaround for CVE-2018-1625?
There are no specific workarounds documented for CVE-2018-1625, so applying the appropriate update is recommended.