Tuesday, October 29, 2013

Security Bulletin: Tivoli Federated Identity Manager and Tivoli Federated Identity Manager Business Gateway redirect to an insufficiently validated URL (CVE-2013-5431)

Under certain conditions, IBM Tivoli Federated Identity Manager (TFIM)/ IBM Tivoli Federated Identity Manager Business Gateway (TFIMBG) could send a redirect to a URL provided by an external client without performing sufficient validation of the URL ...



via IBM Product Security Incident Response Team https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_tivoli_federated_identity_manager_and_tivoli_federated_identity_manager_business_gateway_redirect_to_an_insufficiently_validated_url_cve_2013_5431?lang=en_us

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.