4.6
CVSSv2

CVE-2017-1468

Published: 02/08/2017 Updated: 03/10/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

IBM InfoSphere Information Server 9.1, 11.3, and 11.5 could allow a local user to gain elevated privileges by placing arbitrary files in installation directories. IBM X-force ID: 128467.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm infosphere information server 9.1

ibm infosphere information server 11.3

ibm infosphere information server 11.5

ibm infosphere_information_server 11.5

Exploits

IBM Infosphere Information Server / Datastage versions 91, 113, and 115 (including Cloud version 115) suffer from bypass, XML external entity injection, DLL side loading, and various other vulnerabilities ...