CVE-2024-55895
- EPSS 0.04%
- Published 29.03.2025 13:15:40
- Last modified 08.07.2025 17:22:06
IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
CVE-2024-51477
- EPSS 0.04%
- Published 28.03.2025 23:51:32
- Last modified 07.07.2025 16:27:25
IBM InfoSphere Information Server 11.7 could allow an authenticated to obtain sensitive username information due to an observable response discrepancy.
CVE-2024-7577
- EPSS 0.03%
- Published 28.03.2025 23:50:36
- Last modified 08.07.2025 17:26:02
IBM InfoSphere Information Server 11.7 could disclose sensitive user credentials from log files during new installation of the product.
CVE-2024-43186
- EPSS 0.03%
- Published 28.03.2025 23:49:20
- Last modified 08.07.2025 17:28:18
IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information that is stored locally under certain conditions.
CVE-2024-51459
- EPSS 0.02%
- Published 19.03.2025 18:08:06
- Last modified 07.07.2025 16:58:53
IBM InfoSphere Information Server 11.7 could allow a local user to execute privileged commands due to the improper handling of permissions.
CVE-2024-40706
- EPSS 0.09%
- Published 24.01.2025 16:15:36
- Last modified 11.03.2025 17:58:30
IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid in further attacks against the system.
CVE-2024-52363
- EPSS 0.13%
- Published 17.01.2025 02:15:25
- Last modified 11.03.2025 17:53:21
IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system.
CVE-2021-29827
- EPSS 0.04%
- Published 19.12.2024 00:15:04
- Last modified 12.03.2025 17:43:30
IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click ac...
CVE-2024-52901
- EPSS 0.11%
- Published 12.12.2024 16:15:54
- Last modified 07.01.2025 18:16:58
IBM InfoSphere Information Server 11.7 could allow an authenticated user to GUI to not load or stop working due to improper input validation.
CVE-2024-51460
- EPSS 0.11%
- Published 11.12.2024 13:15:06
- Last modified 14.01.2025 19:40:36
IBM InfoSphere Information Server 11.7 could allow an authenticated user to obtain sensitive information when a detailed technical error message is returned in a stack trace. This information could be used in further attacks against the system.