8.1
CVSSv3

CVE-2016-6098

Published: 08/06/2017 Updated: 13/06/2017
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm security key lifecycle manager 2.5.0.0

ibm security key lifecycle manager 2.5.0.1

ibm tivoli key lifecycle manager 2.0.1.3

ibm tivoli key lifecycle manager 2.0.1.4

ibm tivoli key lifecycle manager 2.0.1.5

ibm tivoli key lifecycle manager 2.0.1.6

ibm security key lifecycle manager 2.5.0.2

ibm security key lifecycle manager 2.5.0.4

ibm tivoli key lifecycle manager 2.0.1

ibm tivoli key lifecycle manager 2.0.1.2

ibm tivoli key lifecycle manager 2.0.1.7

ibm security key lifecycle manager 2.5.0.6

ibm security key lifecycle manager 2.5.0.7

ibm security key lifecycle manager 2.6.0.0

ibm security key lifecycle manager 2.6.0.1

ibm security key lifecycle manager 2.5.0.3

ibm security key lifecycle manager 2.5.0.5

ibm security key lifecycle manager 2.6.0.2

ibm tivoli key lifecycle manager 2.0.1.1

ibm tivoli key lifecycle manager 2.0.1.8