ZeroHour

CVE-2016-3028

CVSS 3.0
9.1 critical
EPSS
4%p89
Published
()
Modified
Description

IBM Security Access Manager for Web 7.0 before IF2 and 8.0 before 8.0.1.4 IF3 and Security Access Manager 9.0 before 9.0.1.0 IF5 allow remote authenticated users to execute arbitrary commands by leveraging LMI admin access.

Vendors
ibm
Products
security access manager, security access manager for web
Weakness
CWE-78
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.