CVE-2023-50954: IBM InfoSphere Information Server information disclosure
IBM InfoSphere Information Server 11.7 returns sensitive information in URL information that could be used in further attacks against the system. IBM X-Force ID: 275776.
Other sources
IBM InfoSphere Information Server returns sensitive information in URL information that could be used in further attacks against the system.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50954?
CVE-2023-50954 is considered a medium severity vulnerability due to the potential exposure of sensitive information.
How do I fix CVE-2023-50954?
To fix CVE-2023-50954, apply the relevant security patches provided by IBM for InfoSphere Information Server version 11.7.
What systems are affected by CVE-2023-50954?
CVE-2023-50954 affects IBM InfoSphere Information Server version 11.7.
What type of information is exposed by CVE-2023-50954?
CVE-2023-50954 exposes sensitive information through URL parameters, which could be leveraged in subsequent attacks.
Is there an official reference for CVE-2023-50954?
Yes, the official references for CVE-2023-50954 can usually be found on IBM's support pages and vulnerability databases.