PT-2017-7597 · Ibm · Ibm Marketing Platform

Published

2017-04-17

·

Updated

2017-04-21

·

CVE-2016-0228

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Marketing Platform version 10.0
Description The issue allows a remote attacker to conduct phishing attacks due to an open redirect vulnerability in various scripts. This could enable an attacker to redirect a victim to arbitrary Web sites.
Recommendations For IBM Marketing Platform version 10.0, update the software to a version that includes a fix for the open redirect vulnerability. As a temporary workaround, consider restricting access to the vulnerable scripts to minimize the risk of exploitation.

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-0228

Affected Products

Ibm Marketing Platform