Boletines de Vulnerabilidades

IBM Security Bulletin: IBM InfoSphere Information Server is vulnerable to privilege escalation (CVE-2015-5021)


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM InfoSphere Information Server could allow an authenticated user of DataStage to view sensitive information or execute jobs even though the user does not have the proper privileges to do so. CVE(s): CVE-2015-5021 Affected product(s) and affected version(s): The following product, running on all supported platforms, are affected: IBM InfoSphere Information Server: versions 11.3 and 11.5 Refer to the following reference URLs for remediation and additional vulnerability details:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_infosphere_information_server_is_vulnerable_to_privilege_escalation_cve_2015_5021?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-5021 ,CVE-2015-5169 ,CVE-2015-2992 ,CVE-2015-5621 ,CVE-2015-4997 ,CVE-2014-9297 ,CVE-2014-9298 ,CVE-2015-1798 ,CVE-2015-1799 and CVE-2015-3405.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-10-29

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT