First published: Mon Apr 17 2017(Updated: )
IBM Marketing Platform 10.0 could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability in various scripts. An attacker could exploit this vulnerability to redirect a victim to arbitrary Web sites. IBM X-Force ID: 110236.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Marketing Platform | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0228 is considered a medium severity vulnerability.
To fix CVE-2016-0228, ensure that you apply the appropriate patch or upgrade your IBM Marketing Platform to a secured version.
CVE-2016-0228 allows attackers to perform phishing attacks by redirecting users to arbitrary websites.
Yes, CVE-2016-0228 can be exploited by remote attackers.
CVE-2016-0228 affects IBM Marketing Platform version 10.0.