4
CVE-2015-0143
- EPSS 0.97%
- Veröffentlicht 03.10.2015 22:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
IBM OpenPages GRC Platform 6.2 before IF7, 6.2.1 before 6.2.1.1 IF5, 7.0 before FP4, and 7.1 before FP1 allows remote authenticated users to obtain sensitive information by reading error messages.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Openpages Grc Platform Version 6.2.0.0
Ibm ≫ Openpages Grc Platform Version 6.2.1.0
Ibm ≫ Openpages Grc Platform Version 6.2.1.1
Ibm ≫ Openpages Grc Platform Version 7.0.0.0
Ibm ≫ Openpages Grc Platform Version 7.1.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.97% | 0.571 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
http://www-01.ibm.com/support/docview.wss?uid=swg21963358