IBM Security Access Manager Appliance 7.0.0, 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 128606.
References
Link | Resource |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg22012329 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/104476 | VDB Entry Third Party Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
No history.
Information
Published : 2018-06-06 17:29
Updated : 2024-02-04 19:46
NVD link : CVE-2017-1474
Mitre link : CVE-2017-1474
CVE.ORG link : CVE-2017-1474
JSON object : View
Products Affected
ibm
- security_access_manager_for_mobile
- security_access_manager_for_web
- security_access_manager
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor