IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, caused by improper content validation. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to bypass validation and load a page with malicious content.

Project Subscriptions

Vendors Products
Security Access Manager 9.0 Firmware Subscribe
Security Access Manager For Mobile Subscribe
Security Access Manager For Mobile Appliance Subscribe
Security Access Manager For Web 7.0 Firmware Subscribe
Security Access Manager For Web 8.0 Firmware Subscribe
Security Access Manager For Web Appliance Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2016-4093 IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, caused by improper content validation. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to bypass validation and load a page with malicious content.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-08-05T23:40:14.481Z

Reserved: 2016-03-09T00:00:00.000Z

Link: CVE-2016-3020

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-02-07T16:59:00.150

Modified: 2025-04-20T01:37:25.860

Link: CVE-2016-3020

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses