IBM Connections 4.x through 4.5 CR5, 5.0 before CR4, and 5.5 before CR1 allows remote authenticated users to obtain sensitive information via an unspecified brute-force attack.
                
            References
                    | Link | Resource | 
|---|---|
| http://www-01.ibm.com/support/docview.wss?uid=swg1LO89962 | Broken Link | 
| http://www.securityfocus.com/bid/93147 | |
| https://www-01.ibm.com/support/docview.wss?uid=swg21989067 | Patch Vendor Advisory | 
| http://www-01.ibm.com/support/docview.wss?uid=swg1LO89962 | Broken Link | 
| http://www.securityfocus.com/bid/93147 | |
| https://www-01.ibm.com/support/docview.wss?uid=swg21989067 | Patch Vendor Advisory | 
Configurations
                    History
                    21 Nov 2024, 02:49
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www-01.ibm.com/support/docview.wss?uid=swg1LO89962 - Broken Link | |
| References | () http://www.securityfocus.com/bid/93147 - | |
| References | () https://www-01.ibm.com/support/docview.wss?uid=swg21989067 - Patch, Vendor Advisory | 
Information
                Published : 2016-09-26 04:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-2999
Mitre link : CVE-2016-2999
CVE.ORG link : CVE-2016-2999
JSON object : View
Products Affected
                ibm
- connections
CWE
                
                    
                        
                        CWE-200
                        
            Exposure of Sensitive Information to an Unauthorized Actor
