CVE-2016-2882

IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to obtain sensitive information by reading HTTP responses.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
ibmtririga_application_platform
3.3.0.0
ibmtririga_application_platform
3.3.0.1
ibmtririga_application_platform
3.3.0.2
ibmtririga_application_platform
3.3.1.0
ibmtririga_application_platform
3.3.1.1
ibmtririga_application_platform
3.3.1.2
ibmtririga_application_platform
3.3.1.3
ibmtririga_application_platform
3.3.2.0
ibmtririga_application_platform
3.3.2.1
ibmtririga_application_platform
3.3.2.3
ibmtririga_application_platform
3.3.2.4
ibmtririga_application_platform
3.3.2.5
ibmtririga_application_platform
3.4.0.0
ibmtririga_application_platform
3.4.1.1
ibmtririga_application_platform
3.4.1.2
ibmtririga_application_platform
3.4.1.3
ibmtririga_application_platform
3.4.2.0
ibmtririga_application_platform
3.4.2.1
ibmtririga_application_platform
3.4.2.2
ibmtririga_application_platform
3.4.2.3
ibmtririga_application_platform
3.5.0.0
ibmtririga_application_platform
3.5.0.1
𝑥
= Vulnerable software versions