CVE-2014-4788 Information

Description

IBM Initiate Master Data Service 9.5 before 9.5.093013 9.7 before 9.7.093013 10.0 before 10.0.093013 and 10.1 before 10.1.093013 does not have an off autocomplete attribute for authentication fields which makes it easier for remote attackers to obtain access by leveraging an unattended workstation.

Reference

http://www-01.ibm.com/support/docview.wss?uid=swg21682450 https://exchange.xforce.ibmcloud.com/vulnerabilities/95058

Share on: