IBM Security Guardium transmits query parameters in SSL requests, that could be intercepted by a remote attacker using man in the middle techniques
CVE(s): CVE-2016-0248
Affected product(s) and affected version(s):
IBM Security Guardium V9x and 10
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cgSJZW
X-Force Database: http://ift.tt/2cAB1OF
from IBM Product Security Incident Response Team http://ift.tt/2cgU2IB
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.