First published: Thu Dec 06 2018(Updated: )
IBM Connections 5.0, 5.5, and 6.0 could allow an authenticated user to obtain sensitive information from invalid request error messages. IBM X-Force ID: 153315.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Connections | =5.0 | |
IBM Connections | =5.5 | |
IBM Connections | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this IBM Connections vulnerability is CVE-2018-1935.
The severity level of CVE-2018-1935 is medium (4.3).
An authenticated user can exploit CVE-2018-1935 to obtain sensitive information from invalid request error messages.
IBM Connections versions 5.0, 5.5, and 6.0 are affected by CVE-2018-1935.
Yes, IBM has released a fix for CVE-2018-1935. Please refer to IBM's support documentation for more information.