IBM Security Access Manager for Web 7.x before 7.0.0.16 and 8.x before 8.0.1.3 mishandles WebSEAL HTTPTransformation requests, which allows remote attackers to read or write to arbitrary files via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-11-08 14:59
Updated : 2016-12-07 10:15
NVD link : CVE-2015-4963
Mitre link : CVE-2015-4963
JSON object : View
CWE
CWE-17
DEPRECATED: Code
Products Affected
ibm
- security_access_manager_for_web