The IMS server before Ifix 6 in IBM Security Access Manager for Enterprise Single Sign-On (ISAM ESSO) 8.2 allows remote authenticated users to read log files by leveraging helpdesk privileges for a direct request.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/87482http://www-01.ibm.com/support/docview.wss?uid=swg21660211