← Back

CVE-2017-1489

nvd nist
Published: Aug 29, 2017Modified: May 13, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

IBM Security Access Manager 6.1, 7.0, 8.0, and 9.0 e-community configurations may be affected by a redirect vulnerability. ECSSO Master Authentication can redirect to a server not participating in an e-community domain. IBM X-Force ID: 128687.

Affected (164)

6 products
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 6.1.0.10
Version 6.1.0.11
Version 6.1.0.12
Version 6.1.0.13
Version 6.1.0.14
Version 6.1.0.15
Version 6.1.0.16
Version 6.1.0.17
Version 6.1.0.18
Version 6.1.0.19
Version 6.1.0.1
Version 6.1.0.20
Version 6.1.0.21
Version 6.1.0.22
Version 6.1.0.23
Version 6.1.0.24
Version 6.1.0.25
Version 6.1.0.26
Version 6.1.0.27
Version 6.1.0.28
Version 6.1.0.29
Version 6.1.0.2
Version 6.1.0.30
Version 6.1.0.31
Version 6.1.0.3
Version 6.1.0.4
Version 6.1.0.5
Version 6.1.0.6
Version 6.1.0.7
Version 6.1.0.8
Version 6.1.0.9
Version 6.1.0
Configuration B
31 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 6.1.1.10
Version 6.1.1.11
Version 6.1.1.12
Version 6.1.1.13
Version 6.1.1.14
Version 6.1.1.15
Version 6.1.1.16
Version 6.1.1.17
Version 6.1.1.18
Version 6.1.1.19
Version 6.1.1.1
Version 6.1.1.20
Version 6.1.1.21
Version 6.1.1.22
Version 6.1.1.23
Version 6.1.1.24
Version 6.1.1.25
Version 6.1.1.26
Version 6.1.1.27
Version 6.1.1.28
Version 6.1.1.29
Version 6.1.1.2
Version 6.1.1.30
Version 6.1.1.3
Version 6.1.1.4
Version 6.1.1.5
Version 6.1.1.6
Version 6.1.1.7
Version 6.1.1.8
Version 6.1.1.9
Version 6.1.1
Configuration C
31 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.0.10
Version 7.0.0.11
Version 7.0.0.12
Version 7.0.0.13
Version 7.0.0.14
Version 7.0.0.15
Version 7.0.0.16
Version 7.0.0.17
Version 7.0.0.18
Version 7.0.0.19
Version 7.0.0.1
Version 7.0.0.20
Version 7.0.0.21
Version 7.0.0.22
Version 7.0.0.23
Version 7.0.0.24
Version 7.0.0.25
Version 7.0.0.26
Version 7.0.0.27
Version 7.0.0.28
Version 7.0.0.29
Version 7.0.0.2
Version 7.0.0.30
Version 7.0.0.3
Version 7.0.0.4
Version 7.0.0.5
Version 7.0.0.6
Version 7.0.0.7
Version 7.0.0.8
Version 7.0.0.9
Version 7.0
Configuration D
31 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.0.10
Version 7.0.0.11
Version 7.0.0.12
Version 7.0.0.13
Version 7.0.0.14
Version 7.0.0.15
Version 7.0.0.16
Version 7.0.0.17
Version 7.0.0.18
Version 7.0.0.19
Version 7.0.0.1
Version 7.0.0.20
Version 7.0.0.21
Version 7.0.0.22
Version 7.0.0.23
Version 7.0.0.24
Version 7.0.0.25
Version 7.0.0.26
Version 7.0.0.27
Version 7.0.0.28
Version 7.0.0.29
Version 7.0.0.2
Version 7.0.0.30
Version 7.0.0.3
Version 7.0.0.4
Version 7.0.0.5
Version 7.0.0.6
Version 7.0.0.7
Version 7.0.0.8
Version 7.0.0.9
Version 7.0
Configuration E
16 vulnerable
Configuration F
16 vulnerable
Configuration G
7 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 9.0.0.0
Version 9.0.0.1
Version 9.0.1.0
Version 9.0.2.0
Version 9.0.2.1
Version 9.0.3.0
Version 9.0.3.0 if1

References (8)

Source: psirt@us.ibm.com
Vendor Advisory
Source: psirt@us.ibm.com
Third Party AdvisoryVDB Entry
Source: psirt@us.ibm.com
Third Party AdvisoryVDB Entry
Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory

Timeline

No history available yet.