CVE-2025-1499

IBM InfoSphere Information Server 11.7 stores credential information for database authentication in a cleartext parameter file that could be viewed by an authenticated user.
References
Link Resource
https://www.ibm.com/support/pages/node/7233154 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:infosphere_information_server:11.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_information_server_on_cloud:11.7:*:*:*:*:*:*:*

History

09 Jun 2025, 18:08

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:infosphere_information_server:11.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_information_server_on_cloud:11.7:*:*:*:*:*:*:*
Summary
  • (es) IBM InfoSphere Information Server 11.7 almacena información de credenciales para la autenticación de la base de datos en un archivo de parámetros de texto sin formato que puede ser visto por un usuario autenticado.
References () https://www.ibm.com/support/pages/node/7233154 - () https://www.ibm.com/support/pages/node/7233154 - Vendor Advisory
First Time Ibm
Ibm infosphere Information Server
Ibm infosphere Information Server On Cloud

01 Jun 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-01 12:15

Updated : 2025-06-09 18:08


NVD link : CVE-2025-1499

Mitre link : CVE-2025-1499

CVE.ORG link : CVE-2025-1499


JSON object : View

Products Affected

ibm

  • infosphere_information_server_on_cloud
  • infosphere_information_server
CWE
CWE-312

Cleartext Storage of Sensitive Information