IBM Security Identity Manager Adapter (ISIM) 7.0.0.0

CPE Details

IBM Security Identity Manager Adapter (ISIM) 7.0.0.0
7.0.0.0
2020-08-25
13h25 +00:00
2020-08-25
13h25 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:ibm:security_identity_manager_adapter:7.0.0.0:*:*:*:*:*:*:*

Informations

Vendor

ibm

Product

security_identity_manager_adapter

Version

7.0.0.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-20574 2021-06-28 16h10 +00:00 IBM Security Identity Manager Adapters 6.0 and 7.0 could allow a remote authenticated attacker to conduct an LDAP injection. By using a specially crafted request, an attacker could exploit this vulnerability and takeover other accounts. IBM X-Force ID: 199252.
8.8
Haute
CVE-2021-20573 2021-06-28 16h10 +00:00 IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote authenticated attacker could overflow the and cause the server to crash. IBM X-Force ID: 199249.
6.5
Moyen
CVE-2021-20572 2021-06-28 16h10 +00:00 IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A remote authenticated attacker could overflow the and cause the server to crash. IBM X-Force ID: 199247.
6.5
Moyen
CVE-2021-20494 2021-06-28 16h10 +00:00 IBM Security Identity Manager Adapters 6.0 and 7.0 are vulnerable to a heap based buffer overflow, caused by improper bounds. An authenticared user could overflow the buffer and cause the service to crash. IBM X-Force ID: 197882.
6.5
Moyen
CVE-2016-0330 2016-07-15 16h00 +00:00 IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles password creation, which makes it easier for remote attackers to obtain access by leveraging an attack against the password algorithm.
7.3
Haute
CVE-2016-0338 2016-07-15 16h00 +00:00 IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 allows local users to discover cleartext passwords by (1) reading a configuration file or (2) examining a process.
6.2
Moyen
CVE-2016-0339 2016-07-15 16h00 +00:00 IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session identifiers after logout, which makes it easier for remote attackers to spoof users by leveraging knowledge of "traffic records."
5.6
Moyen
CVE-2016-0340 2016-07-15 16h00 +00:00 IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 mishandles session expiration, which allows remote attackers to hijack sessions by leveraging an unattended workstation.
7.4
Haute
CVE-2016-0357 2016-07-15 16h00 +00:00 IBM Security Identity Manager (ISIM) Virtual Appliance 7.0.0.0 through 7.0.1.1 before 7.0.1-ISS-SIM-FP0003 allows remote attackers to conduct clickjacking attacks via a crafted web site.
4.3
Moyen