CVE-2016-5972

MEDIUM

IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance ...

Title source: llm

Description

IBM Security Privileged Identity Manager (ISPIM) Virtual Appliance 2.x before 2.0.2 FP8 uses weak permissions for unspecified resources, which allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.

Scores

CVSS v3 6.8
EPSS 0.0012
EPSS Percentile 30.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N

Classification

CWE
CWE-284 CWE-200
Status published

Affected Products (2)

ibm/security_privileged_identity_manager_virtual_appliance < 2.0.2
n/a/n/a

Timeline

Published Sep 26, 2016
Tracked Since Feb 18, 2026