Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM InfoSphere Information Server through 8.5 FP3, 8.7 through FP2, and 9.1 produces login-failure messages indicating whether the username or password is incorrect, which allows remote attackers to enumerate user accounts via a brute-force attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM InfoSphere Information Server 信息泄露漏洞
Vulnerability Description
IBM InfoSphere Information Server是美国IBM公司的一套数据整合平台。该平台可用于整合各种渠道获取的数据信息。 IBM InfoSphere Information Server中存在安全漏洞在用户登录失败时,程序会返回信息提示用户名或密码是否正确,远程攻击者可以利用该漏洞尝试不同的用户名和口令组合,通过“暴破”的方式猜解用户名和口令。以下版本受到影响:IBM InfoSphere Information Serve 8.1,8.5,8.7及9.1版本。
CVSS Information
N/A
Vulnerability Type
N/A