8
CVSSv3

CVE-2015-5018

Published: 02/01/2016 Updated: 07/12/2016
CVSS v2 Base Score: 8.5 | Impact Score: 10 | Exploitability Score: 6.8
CVSS v3 Base Score: 8 | Impact Score: 6 | Exploitability Score: 1.3
VMScore: 756
Vector: AV:N/AC:M/Au:S/C:C/I:C/A:C

Vulnerability Summary

IBM Security Access Manager for Web 7.0.0 before FP19 and 8.0 prior to 8.0.1.3 IF3, and Security Access Manager 9.0 prior to 9.0.0.0 IF1, allows remote authenticated users to execute arbitrary OS commands by leveraging Local Management Interface (LMI) access.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security access manager 9.0 firmware 9.0.0

ibm security access manager for web 8.0 firmware 8.0.1.3

ibm security access manager for web 7.0 firmware 7.0.0.13

ibm security access manager for web 7.0 firmware 7.0.0.12

ibm security access manager for web 7.0 firmware 7.0.0.3

ibm security access manager for web 7.0 firmware 7.0.0.2

ibm security access manager for web 8.0 firmware 8.0.1.0

ibm security access manager for web 7.0 firmware 7.0.0.16

ibm security access manager for web 7.0 firmware 7.0.0.8

ibm security access manager for web 7.0 firmware 7.0.0.7

ibm security access manager for web 8.0 firmware 8.0.0.5

ibm security access manager for web 8.0 firmware 8.0.0.3

ibm security access manager for web 8.0 firmware 8.0.1.2

ibm security access manager for web 8.0 firmware 8.0.1

ibm security access manager for web 7.0 firmware 7.0.0.10

ibm security access manager for web 7.0 firmware 7.0.0.9

ibm security access manager for web 7.0 firmware 7.0.0.1

ibm security access manager for web 7.0 firmware 7.0.0.11

ibm security access manager for web 7.0 firmware 7.0.0.15

ibm security access manager for web 7.0 firmware 7.0.0.14

ibm security access manager for web 7.0 firmware 7.0.0.6

ibm security access manager for web 7.0 firmware 7.0.0.5

ibm security access manager for web 7.0 firmware 7.0.0.4

ibm security access manager for web 8.0 firmware 8.0.0.2

ibm security access manager for web 8.0 firmware 8.0.0.1