IBM Security Identity Manager 6.0 and 7.0 could allow an attacker to create unexpected control flow paths through the application, potentially bypassing security checks. Exploitation of this weakness can result in a limited form of code injection. IBM X-Force ID: 156162.
2019-02-04T21:29:01.737
2024-11-21T04:43:04.390
Modified
CVSSv3.1: 6.2 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | security_identity_manager | ≤ 6.0.0.20 | Yes |
Application | ibm | security_identity_manager | ≤ 7.0.1.10 | Yes |