← back
CVE-2017-1107

CVE-2017-1107

CVSS 4.3 MEDIUMEPSS 1.4%
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 1.4%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
19 Jun 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Marketing Platform 9.1.0, 9.1.2, 10.0, and 10.1 exposes sensitive information in the headers that could be used by an authenticated attacker in further attacks against the system. IBM X-Force ID: 120906.
CVSS:3.0/S:U/C:L/I:N/PR:L/AV:N/UI:N/A:N/AC:L/RL:O/RC:C/E:U
Affected products
IBM · Marketing Platform

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →