VendorsIBMsecurity_access_manager_9.0_firmware9.0.3.0
Vulnerabilities

IBM Security Access Manager 9.0 Firmware 9.0.3.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-1453
IBM Security Access Manager Appliance 9.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 128372.
Published 2017-11-13 · Modified
9.0EPSS 0.029
CVE-2017-1477
IBM Security Access Manager Appliance 9.0.3 is vulnerable to a XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 128612.
Published 2017-11-13 · Modified
8.1EPSS 0.014