CVE-2016-2882

IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.4, and 3.5 before 3.5.0.2 allows remote authenticated users to obtain sensitive information by reading HTTP responses.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 37%
VendorProductVersion
ibmtririga_application_platform
3.3.0.0
ibmtririga_application_platform
3.3.0.1
ibmtririga_application_platform
3.3.0.2
ibmtririga_application_platform
3.3.1.0
ibmtririga_application_platform
3.3.1.1
ibmtririga_application_platform
3.3.1.2
ibmtririga_application_platform
3.3.1.3
ibmtririga_application_platform
3.3.2.0
ibmtririga_application_platform
3.3.2.1
ibmtririga_application_platform
3.3.2.3
ibmtririga_application_platform
3.3.2.4
ibmtririga_application_platform
3.3.2.5
ibmtririga_application_platform
3.4.0.0
ibmtririga_application_platform
3.4.1.1
ibmtririga_application_platform
3.4.1.2
ibmtririga_application_platform
3.4.1.3
ibmtririga_application_platform
3.4.2.0
ibmtririga_application_platform
3.4.2.1
ibmtririga_application_platform
3.4.2.2
ibmtririga_application_platform
3.4.2.3
ibmtririga_application_platform
3.5.0.0
ibmtririga_application_platform
3.5.0.1
𝑥
= Vulnerable software versions