Vulnerability Bulletins

IBM Security Bulletin: Information disclosure through unauthenticated SOAP request message. (CVE-2016-0299)

   
Affected software IBM
 
IBM TRIRIGA could disclose sensitive information using a query to the IBM TRIRIGA platform database using crafted web service request by means of a HTTP / SOAP query.CVE(s): CVE-2016-0299Affected product(s) and affected version(s):The following IBM TRIRIGA Application Platform versions are affected. · IBM TRIRIGA Application Platform 3.5. · IBM TRIRIGA Application Platform 3.4. · IBM TRIRIGA Application Platform 3.3. Refer to the following reference URLs for remediation and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_information_disclosure_through_unauthenticated_soap_request_message_cve_2016_0299?lang=en_us