IBM InfoSphere Information Server 8.5 through FP3, 8.7 through FP2, 9.1 through 9.1.2.0, 11.3 through 11.3.1.2, and 11.5 allows remote authenticated users to bypass intended access restrictions via a modified cookie.
| Software | From | Fixed in |
|---|---|---|
| ibm / infosphere_information_server | 8.7.0.1 | 8.7.0.1.x |
| ibm / infosphere_information_server | 9.1.2 | 9.1.2.x |
| ibm / infosphere_information_server | 8.5 | 8.5.x |
| ibm / infosphere_information_server | 8.7 | 8.7.x |
| ibm / infosphere_information_server | 8.5.0.3 | 8.5.0.3.x |
| ibm / infosphere_information_server | 9.1 | 9.1.x |
| ibm / infosphere_information_server | 11.3.1 | 11.3.1.x |
| ibm / infosphere_information_server | 11.3 | 11.3.x |
| ibm / infosphere_information_server | 9.1.0.1 | 9.1.0.1.x |
| ibm / infosphere_information_server | 11.5 | 11.5.x |
| ibm / infosphere_information_server | 8.7.0.2 | 8.7.0.2.x |
| ibm / infosphere_information_server | 8.5.0.1 | 8.5.0.1.x |
| ibm / infosphere_information_server | 8.5.0.2 | 8.5.0.2.x |