Information Disclosure Vulnerability in IBM InfoSphere BigInsights
CVE-2014-4782
6.5MEDIUM
Summary
IBM InfoSphere BigInsights 2.1.2 is susceptible to an information disclosure vulnerability that permits remote authenticated users to access sensitive SMTP server credentials through specific vectors associated with the Alert management service. This exposure can potentially enable unauthorized individuals to manipulate or gain further access to the email management functionalities within the system.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved