IBM Multi-Enterprise Integration Gateway 1.0 through 1.0.0.1 and B2B Advanced Communications 1.x before 1.0.0.4, when guest access is configured, allow remote authenticated users to obtain sensitive information by reading error messages in responses.
                
            References
                    Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Configuration 2 (hide)
                                
                                
  | 
                        
Information
                Published : 2015-12-31 21:59
Updated : 2016-11-28 11:43
NVD link : CVE-2015-7445
Mitre link : CVE-2015-7445
JSON object : View
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
                ibm
- multi-enterprise_integration_gateway
 - b2b_advanced_communications
 


