cbcvebase.
CVE-2014-3053
published 2014-06-21

CVE-2014-3053: The Local Management Interface (LMI) in IBM Security Access Manager (ISAM) for Mobile 8.0 with firmware 8.0.0.0 through 8.0.0.3 and IBM Security Access Manager…

high8CVSS 3.1
AVAACLAuNCCIPAC
The Local Management Interface (LMI) in IBM Security Access Manager (ISAM) for Mobile 8.0 with firmware 8.0.0.0 through 8.0.0.3 and IBM Security Access Manager for Web 7.0, and 8.0 with firmware 8.0.0.2 and 8.0.0.3, allows remote attackers to bypass authentication via a login action with invalid credentials.

Affected

8 ranges
VendorProductVersion rangeFixed in
ibmsecurity_access_manager_for_mobile_appliance
ibmsecurity_access_manager_for_mobile_software
ibmsecurity_access_manager_for_web_8.0_firmware
ibmsecurity_access_manager_for_web_8.0_firmware
ibmsecurity_access_manager_for_web_appliance
ibmsecurity_access_manager_for_web_appliance
ibmsecurity_access_manager_for_web_software
ibmsecurity_access_manager_for_web_software