Information Disclosure in IBM WebSphere Partner Gateway
CVE-2009-0897

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
21 May 2009

Summary

IBM WebSphere Partner Gateway versions 6.1.0 and 6.1.1 prior to their respective patch updates are susceptible to an information disclosure vulnerability. This flaw permits remote authenticated users to access sensitive data through certain vectors related to the schema DB2 instance id and the archiver script. Proper attention and prompt updates are necessary to mitigate these risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.