CVE-2017-1107
CVE-2017-1107
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
19 Jun 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Marketing Platform 9.1.0, 9.1.2, 10.0, and 10.1 exposes sensitive information in the headers that could be used by an authenticated attacker in further attacks against the system. IBM X-Force ID: 120906.
CVSS:3.0/S:U/C:L/I:N/PR:L/AV:N/UI:N/A:N/AC:L/RL:O/RC:C/E:U
Affected products
IBM · Marketing PlatformWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →