CVE-2016-3020
—CVSS 3.0
5.5 medium
EPSS
1%p68
Published
()
Modified
Description
IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, caused by improper content validation. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to bypass validation and load a page with malicious content.
- Vendors
- ibm
- Products
- security access manager for web 7.0 firmware, security access manager for web 8.0 firmware, security access manager for mobile, security access manager 9.0 firmware
- Weakness
- CWE-284
- Vector
- CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
In the news0 stories
No ingested article mentions this CVE yet.