CVE-2017-1474

IBM Security Access Manager Appliance 7.0.0, 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 128606.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:security_access_manager:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:ibm:security_access_manager_for_mobile:*:*:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:a:ibm:security_access_manager_for_web:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_access_manager_for_web:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:21

Type Values Removed Values Added
References () http://www.ibm.com/support/docview.wss?uid=swg22012329 - Patch, Vendor Advisory () http://www.ibm.com/support/docview.wss?uid=swg22012329 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/104476 - VDB Entry, Third Party Advisory () http://www.securityfocus.com/bid/104476 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 - VDB Entry, Vendor Advisory

Information

Published : 2018-06-06 17:29

Updated : 2024-11-21 03:21


NVD link : CVE-2017-1474

Mitre link : CVE-2017-1474

CVE.ORG link : CVE-2017-1474


JSON object : View

Products Affected

ibm

  • security_access_manager_for_web
  • security_access_manager_for_mobile
  • security_access_manager
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor