Web Console Vulnerability in IBM Data Studio and Related Products
CVE-2013-4025
Currently unrated
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 25 September 2013
What is CVE-2013-4025?
The IBM Data Studio Web Console and related IBM products lack the 'off' autocomplete attribute for their login-password fields. This oversight allows remote attackers to exploit unattended workstations more easily, potentially gaining unauthorized access to sensitive data and systems. Users and organizations utilizing these products should take immediate steps to mitigate the risks involved.