PT-2017-10285 · Ibm · Ibm Infosphere Master Data Management

Published

2017-07-31

·

Updated

2017-08-03

·

CVE-2016-9717

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM Infosphere Master Data Management (MDM) versions 10.1 through 11.6
Description The issue allows attackers to expose duplicated parameters, potentially producing anomalous behavior in the application that can be exploited.
Recommendations For IBM Infosphere Master Data Management (MDM) versions 10.1 through 11.6, consider restricting access to sensitive parameters to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-9717

Affected Products

Ibm Infosphere Master Data Management