Known Vulnerabilities for Security Access Manager 9.0 Firmware by Ibm
Listed below are 10 of the newest known vulnerabilities associated with "Security Access Manager 9.0 Firmware" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-1533 | IBM Security Access Manager Appliance 9.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... | 6.1 - MEDIUM | 2018-01-10 | 2020-10-27 |
| CVE-2017-1478 | IBM Security Access Manager Appliance 9.0.0 allows web pages to be stored locally which can be read by another user on the sy... | 3.3 - LOW | 2018-01-11 | 2018-02-01 |
| CVE-2017-1477 | IBM Security Access Manager Appliance 9.0.3 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML... | 8.1 - HIGH | 2017-11-13 | 2020-10-27 |
| CVE-2017-1459 | IBM Security Access Manager Appliance 8.0.0 and 9.0.0 specifies permissions for a security-critical resource in a way that al... | 4.2 - MEDIUM | 2018-01-10 | 2020-10-27 |
| CVE-2017-1453 | IBM Security Access Manager Appliance 9.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the ... | 8.8 - HIGH | 2017-11-13 | 2020-10-27 |
| CVE-2016-3020 | IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, ca... | 5.5 - MEDIUM | 2017-02-07 | 2020-10-27 |
| CVE-2016-3019 | IBM Security Access Manager for Web 9.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to ... | 6.5 - MEDIUM | 2017-06-07 | 2020-10-27 |
| CVE-2016-3017 | IBM Security Access Manager for Web could allow a remote attacker to obtain sensitive information due to security misconfigur... | 7.5 - HIGH | 2017-02-01 | 2020-10-27 |
| CVE-2016-3016 | IBM Security Access Manager for Web processes patches, image backups and other updates without sufficiently verifying the ori... | 4.4 - MEDIUM | 2017-02-01 | 2020-10-27 |
| CVE-2016-2908 | IBM Single Sign On for Bluemix could allow a remote attacker to obtain sensitive information, caused by a XML external entity... | 9.1 - CRITICAL | 2017-02-01 | 2020-10-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.3.1 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.3 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.2.1 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.2.0 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.1.0 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.0.1 | All | All | All |
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.0 | All | All | All |