The client applications in the DataStage Administrator client in InfoSphere DataStage in IBM InfoSphere Information Server 8.1, 8.5 before FP3, and 8.7 rely on client-side access control, which allows remote authenticated users to gain privileges via unspecified vectors.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21623501 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/73285 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-01-31 04:06
Updated : 2017-08-28 18:31
NVD link : CVE-2012-0701
Mitre link : CVE-2012-0701
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ibm
- infosphere_datastage
- infosphere_information_server