VulnerabilityModified
CVE-2017-1768
IBM Security Guardium Big Data Intelligence (SonarG) 3.1 generates an error message that includes sensitive information about its environment, users, or associated data.
MEDIUM 4.3EPSS 1.36%
Does this matter?
Lower severity and a low EPSS score (1.36%). Track it; it rarely justifies an emergency change on its own.
Description
IBM Security Guardium Big Data Intelligence (SonarG) 3.1 generates an error message that includes sensitive information about its environment, users, or associated data. IBM X-Force ID: 136471.
- CVSS 3.0
- 4.3 MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 1.36% probability · 70th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- ibm/security guardium big data intelligence
- Source
- psirt@us.ibm.com
References
- http://www.ibm.com/support/docview.wss?uid=swg22016515Patch, Vendor Advisory
- http://www.securityfocus.com/bid/104493Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/136471VDB Entry, Vendor Advisory
- http://www.ibm.com/support/docview.wss?uid=swg22016515Patch, Vendor Advisory
- http://www.securityfocus.com/bid/104493Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/136471VDB Entry, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.