CVE-2026-2484: IBM InfoSphere Information Server Information Disclosure
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is affected by an information exposure vulnerability caused by overly verbose error messages
Other sources
InfoSphere Information Server is affected by an information exposure vulnerability caused by overly verbose error messages.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2484?
CVE-2026-2484 is categorized as a medium severity vulnerability due to its potential impact on user interactions through cross-site scripting.
How do I fix CVE-2026-2484?
To mitigate CVE-2026-2484, upgrade to a patched version of IBM InfoSphere Information Server beyond 11.7.1.6.
What versions of IBM InfoSphere Information Server are affected by CVE-2026-2484?
CVE-2026-2484 affects IBM InfoSphere Information Server versions 11.7.0.0 through 11.7.1.6.
What type of attack does CVE-2026-2484 facilitate?
CVE-2026-2484 facilitates cross-site scripting attacks, allowing an attacker to inject arbitrary JavaScript code.
Who is primarily affected by CVE-2026-2484?
Users of IBM InfoSphere Information Server who interact with the Web UI are primarily affected by CVE-2026-2484.