IBM Security Access Manager Appliance 7.0.0, 8.0.0 through 8.0.1.6, and 9.0.0 through 9.0.3.1 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 128606.
References
Link | Resource |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg22012329 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/104476 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 | VDB Entry Vendor Advisory |
http://www.ibm.com/support/docview.wss?uid=swg22012329 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/104476 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 | VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
21 Nov 2024, 03:21
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.ibm.com/support/docview.wss?uid=swg22012329 - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/104476 - Third Party Advisory, VDB Entry | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/128606 - VDB Entry, Vendor Advisory |
Information
Published : 2018-06-06 17:29
Updated : 2024-11-21 03:21
NVD link : CVE-2017-1474
Mitre link : CVE-2017-1474
CVE.ORG link : CVE-2017-1474
JSON object : View
Products Affected
ibm
- security_access_manager_for_web
- security_access_manager_for_mobile
- security_access_manager
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor