HTTP Parameter Override is identified in the IBM Infosphere Master Data Management (MDM) 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 product. It enables attackers by exposing the presence of duplicated parameters which may produce an anomalous behavior in the application that can be potentially exploited.
References
Link | Resource |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg22006605 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/100074 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/119730 | VDB Entry Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2017-07-27T00:00:00
Updated: 2017-08-02T09:57:01
Reserved: 2016-12-01T00:00:00
Link: CVE-2016-9717
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-07-31T21:29:00.407
Modified: 2017-08-03T15:56:29.627
Link: CVE-2016-9717
JSON object: View
Redhat Information
No data.
CWE