IBM.BladeCenter.Management.Module.Information.Disclosure

description-logoDescription

This indicates an attack attempt against an information disclosure vulnerability in IBM bladecenter management module.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted URL. It allows a remote attacker to steal cookie-based authentication credentials and other information.

affected-products-logoAffected Products

IBM IBM BladeCenter Managemet Module BPET48L

Impact logoImpact

Information disclosure.
Malicious users may be able to bypass certain security restrictions and compromise a vulnerable system.

recomended-action-logoRecommended Actions

Apply the patch supplied by the vendor.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-02-01 14.540 Name:IBM.
Bladecenter.
Management.
Module.
Information.
Disclosure:IBM.
BladeCenter.
Management.
Module.
Information.
Disclosure