Description
IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
Published: 2026-04-08
Score: 8.4 High
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Apply Patch
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now by upgrading to 7.1.0 FP38 ProductVRMFRemediationIBM Tivoli Netcool Impact7.1.0.38Upgrade to IBM Tivoli Netcool Impact 7.1.0 Fix Pack 38 https://www.ibm.com/support/pages/node/7184732 or later.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 14 Apr 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm tivoli Netcool\/impact
CPEs cpe:2.3:a:ibm:tivoli_netcool\/impact:*:*:*:*:*:*:*:*
Vendors & Products Ibm tivoli Netcool\/impact

Wed, 08 Apr 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Ibm tivoli Netcool/impact
Vendors & Products Ibm tivoli Netcool/impact

Wed, 08 Apr 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 08 Apr 2026 01:00:00 +0000

Type Values Removed Values Added
Description IBM Tivoli Netcool Impact 7.1.0.0 through 7.1.0.37 stores sensitive information in log files that could be read by a local user.
Title Multiple Vulnerabilities affect IBM Tivoli Netcool Impact
First Time appeared Ibm
Ibm tivoli Netcool Impact
Weaknesses CWE-532
CPEs cpe:2.3:a:ibm:tivoli_netcool_impact:7.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:tivoli_netcool_impact:7.1.0.37:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm tivoli Netcool Impact
References
Metrics cvssV3_1

{'score': 8.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Tivoli Netcool/impact Tivoli Netcool\/impact Tivoli Netcool Impact
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-04-09T03:56:00.826Z

Reserved: 2026-03-24T19:37:42.923Z

Link: CVE-2026-4788

cve-icon Vulnrichment

Updated: 2026-04-08T14:23:04.616Z

cve-icon NVD

Status : Analyzed

Published: 2026-04-08T01:16:41.220

Modified: 2026-04-14T21:29:36.453

Link: CVE-2026-4788

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-08T19:44:27Z

Weaknesses