PT-2017-8882 · Ibm · Ibm Tivoli Monitoring
Published
2017-06-27
·
Updated
2017-07-05
·
CVE-2016-6083
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Monitoring V6
Description
The issue allows an unauthenticated user to access SOAP queries, potentially exposing sensitive information.
Recommendations
For IBM Tivoli Monitoring V6, restrict access to SOAP queries to prevent unauthorized exposure of sensitive information. Consider implementing authentication mechanisms for SOAP query access until a more permanent solution is available.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Tivoli Monitoring