CVE Database
/

CVE-2011-4435

Back to search

CVE-2011-4435

Published: Nov 11, 2011

Modified: Aug 7, 2024

PUBLISHED

Description

The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3.0 for z/OS does not prevent directory browsing, which allows remote attackers to obtain sensitive information via HTTP requests.

VendorProductVersions

n/a

n/a

affected
n/a

References

PM41190
vendor-advisory
x_refsource_AIXAPAR
46487
third-party-advisory
x_refsource_SECUNIA
1026278
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now