ZeroHour

CVE-2016-3045

CVSS 3.0
3.7 low
EPSS
<1%p56
Published
()
Modified
Description

IBM Security Access Manager for Web stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referer header or browser history.

Vendors
ibm
Products
security access manager, security access manager for mobile, security access manager for web
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.