CVE-2016-2989

Open redirect vulnerability in the Connections Portlets component 5.x before 5.0.2 for IBM WebSphere Portal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:connections_portlets:5.0:*:*:*:*:websphere_portal:*:*

History

21 Nov 2024, 02:49

Type Values Removed Values Added
References () http://www-01.ibm.com/support/docview.wss?uid=swg21986393 - Patch, Vendor Advisory () http://www-01.ibm.com/support/docview.wss?uid=swg21986393 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/92344 - () http://www.securityfocus.com/bid/92344 -
References () http://www.securitytracker.com/id/1036498 - () http://www.securitytracker.com/id/1036498 -

Information

Published : 2016-08-08 01:59

Updated : 2024-11-21 02:49


NVD link : CVE-2016-2989

Mitre link : CVE-2016-2989

CVE.ORG link : CVE-2016-2989


JSON object : View

Products Affected

ibm

  • connections_portlets
CWE
CWE-284

Improper Access Control