CVE-2016-9717

HTTP Parameter Override is identified in the IBM Infosphere Master Data Management (MDM) 10.1. 11.0. 11.3, 11.4, 11.5, and 11.6 product. It enables attackers by exposing the presence of duplicated parameters which may produce an anomalous behavior in the application that can be potentially exploited.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:infosphere_master_data_management_server:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_master_data_management_server:11.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_master_data_management_server:11.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_master_data_management_server:11.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_master_data_management_server:11.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:infosphere_master_data_management_server:11.6:*:*:*:*:*:*:*

History

21 Nov 2024, 03:01

Type Values Removed Values Added
References () http://www.ibm.com/support/docview.wss?uid=swg22006605 - Patch, Vendor Advisory () http://www.ibm.com/support/docview.wss?uid=swg22006605 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/100074 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/100074 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/119730 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/119730 - VDB Entry, Vendor Advisory

Information

Published : 2017-07-31 21:29

Updated : 2025-04-20 01:37


NVD link : CVE-2016-9717

Mitre link : CVE-2016-9717

CVE.ORG link : CVE-2016-9717


JSON object : View

Products Affected

ibm

  • infosphere_master_data_management_server
CWE
CWE-20

Improper Input Validation