Known Vulnerabilities for Security Access Manager 9.0 Firmware by Ibm
Listed below are 10 of the newest known vulnerabilities associated with "Security Access Manager 9.0 Firmware" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-1533 json | IBM Security Access Manager Appliance 9.0.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... | 6.1 - MEDIUM | 2018-01-10 | 2020-10-27 |
| CVE-2017-1478 json | IBM Security Access Manager Appliance 9.0.0 allows web pages to be stored locally which can be read by another user on the sy... | 3.3 - LOW | 2018-01-11 | 2018-02-01 |
| CVE-2017-1477 json | IBM Security Access Manager Appliance 9.0.3 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML... | 8.1 - HIGH | 2017-11-13 | 2020-10-27 |
| CVE-2017-1459 json | IBM Security Access Manager Appliance 8.0.0 and 9.0.0 specifies permissions for a security-critical resource in a way that al... | 4.2 - MEDIUM | 2018-01-10 | 2020-10-27 |
| CVE-2017-1453 json | IBM Security Access Manager Appliance 9.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the ... | 8.8 - HIGH | 2017-11-13 | 2020-10-27 |
| CVE-2016-5919 json | IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 uses weaker than expected cryptographic algorithms that could all... | 7.5 - HIGH | 2017-02-16 | 2020-10-27 |
| CVE-2016-3051 json | IBM Security Access Manager for Web 9.0.0 could allow an authenticated user to access some privileged functionality of the se... | 4.3 - MEDIUM | 2017-06-07 | 2020-10-27 |
| CVE-2016-3046 json | IBM Security Access Manager for Web is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statem... | 2.7 - LOW | 2017-02-01 | 2020-10-27 |
| CVE-2016-3043 json | IBM Security Access Manager for Web could allow a remote attacker to obtain sensitive information, caused by the failure to p... | 5.9 - MEDIUM | 2017-02-01 | 2020-10-27 |
| CVE-2016-3029 json | IBM Security Access Manager for Web is vulnerable to cross-site request forgery which could allow an attacker to execute mali... | 8.8 - HIGH | 2017-02-01 | 2020-10-27 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.3.1 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.3 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.2.1 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.2.0 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.1.0 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.0.1 | |||
| Operating System | Ibm | Security Access Manager 9.0 Firmware | 9.0.0 |