cbcvebase.
CVE-2018-1813
published 2018-12-13

CVE-2018-1813: IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 uses incomplete blacklisting for input validation which allows attackers…

medium6.5CVSS 3.0
AVNACLPRLUINSUCNIHAN
IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 150017.

Affected

6 ranges
VendorProductVersion rangeFixed in
ibmsecurity_access_manager9.0.1.0 – 9.0.5.0
ibmsecurity_access_manager_appliance
ibmsecurity_access_manager_appliance
ibmsecurity_access_manager_appliance
ibmsecurity_access_manager_appliance
ibmsecurity_access_manager_appliance