CVE-2015-1984

EUVD-2015-2089
IBM InfoSphere Master Data Management Collaborative Edition 9.1, 10.1, 11.0, 11.3, and 11.4 before FP03 allows remote authenticated users to bypass intended access restrictions and read arbitrary profiles via unspecified vectors, as demonstrated by discovering usernames for use in brute-force attacks.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 33%
Affected Products (NVD)
VendorProductVersion
ibminfosphere_master_data_management
9.1
ibminfosphere_master_data_management
10.1
ibminfosphere_master_data_management
11.0
ibminfosphere_master_data_management
11.3
ibminfosphere_master_data_management
11.4
𝑥
= Vulnerable software versions