Open redirect vulnerability in IBM Emptoris Sourcing 10.0.0.x before 10.0.0.1_iFix3, 10.0.1.x before 10.0.1.3_iFix3, 10.0.2.x before 10.0.2.8_iFix1, 10.0.4.0 before 10.0.4.0_iFix8, and 10.1.0.0 before 10.1.0.0_iFix3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors. IBM X-Force ID: 111692.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/111692 | VDB Entry Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg21982629 | Patch Vendor Advisory |
Configurations
Information
Published : 2018-02-02 13:29
Updated : 2018-02-16 08:28
NVD link : CVE-2016-0329
Mitre link : CVE-2016-0329
JSON object : View
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Products Affected
ibm
- emptoris_sourcing