PT-2020-17968 · Ibm · Ibm Tririga Application Platform

Published

2020-04-17

·

Updated

2021-07-21

·

CVE-2020-4277

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM TRIRIGA Application Platform versions 3.5.3 through 3.6.1
Description The issue discloses sensitive information in error messages, which could aid an attacker in formulating future attacks.
Recommendations For versions 3.5.3 and 3.6.1, update to a version that does not disclose sensitive information in error messages to prevent aiding potential attackers.

Fix

Generation of Error Message Containing Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-4277

Affected Products

Ibm Tririga Application Platform