CVE-2016-2996

Severity
6.5MEDIUM
EPSS
0.1%
top 64.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 24
Latest updateMay 17

Description

IBM Security Privileged Identity Manager 2.0 before 2.0.2 FP8, when Virtual Appliance is used, allows remote authenticated users to append to arbitrary files via unspecified vectors.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages1 packages

NVDibm/security_privileged_identity_manager2.0.0, 2.0.1, 2.0.2+2

🔴Vulnerability Details

2
GHSA
GHSA-8gj5-x5x5-qfpr: IBM Security Privileged Identity Manager 22022-05-17
CVEList
CVE-2016-2996: IBM Security Privileged Identity Manager 22016-11-24
CVE-2016-2996 (MEDIUM CVSS 6.5) | IBM Security Privileged Identity Ma | cvebase.io