IBM Security Access Manager 9.0.1 through 9.0.6 does not validate, or incorrectly validates, a certificate which could allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. IBM X-Force ID: 158510.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/158510 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/docview.wss?uid=ibm10888379 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2019-06-21T00:00:00
Updated: 2019-06-25T15:45:29
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-4150
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-06-25T16:15:10.447
Modified: 2023-01-30T19:13:14.453
Link: CVE-2019-4150
JSON object: View
Redhat Information
No data.
CWE