CVE-2016-0366: Infoleak
IBM Security Identity Manager Virtual Appliance 7.0.x before 7.0.1.3-ISS-SIM-IF0001 might allow remote attackers to obtain sensitive information by leveraging weak encryption. IBM X-Force ID: 112071.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0366?
The severity of CVE-2016-0366 is rated as medium due to the potential for remote attackers to gain access to sensitive information.
How do I fix CVE-2016-0366?
To fix CVE-2016-0366, you should upgrade to IBM Security Identity Manager Virtual Appliance version 7.0.1.3-ISS-SIM-IF0001 or later.
What software is affected by CVE-2016-0366?
CVE-2016-0366 affects IBM Security Identity Manager Virtual Appliance versions prior to 7.0.1.3-ISS-SIM-IF0001.
Can CVE-2016-0366 be exploited remotely?
Yes, CVE-2016-0366 can be exploited remotely by leveraging weak encryption.
What type of vulnerability is CVE-2016-0366?
CVE-2016-0366 is categorized as an information disclosure vulnerability due to its weak encryption affecting sensitive data.