CVE-2013-3040
16.08.2013, 01:55
IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | infosphere_information_server | 8.5 |
ibm | infosphere_information_server | 8.5.0.1 |
ibm | infosphere_information_server | 8.5.0.2 |
ibm | infosphere_information_server | 8.5.0.3 |
ibm | infosphere_information_server | 8.7 |
ibm | infosphere_information_server | 8.7.0.1 |
ibm | infosphere_information_server | 8.7.0.2 |
ibm | infosphere_information_server | 9.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References