IBM Jazz for Service Management 1.1.2.1 and 1.1.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 1998714.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.ibm.com/support/docview.wss?uid=swg21998714 | Patch Vendor Advisory | 
| http://www.securityfocus.com/bid/96444 | |
| http://www.ibm.com/support/docview.wss?uid=swg21998714 | Patch Vendor Advisory | 
| http://www.securityfocus.com/bid/96444 | 
Configurations
                    Configuration 1 (hide)
| AND | 
            
            
 
  | 
    
Configuration 2 (hide)
| AND | 
            
            
 
  | 
    
History
                    21 Nov 2024, 03:02
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://www.ibm.com/support/docview.wss?uid=swg21998714 - Patch, Vendor Advisory | |
| References | () http://www.securityfocus.com/bid/96444 - | 
Information
                Published : 2017-02-24 18:59
Updated : 2025-04-20 01:37
NVD link : CVE-2016-9975
Mitre link : CVE-2016-9975
CVE.ORG link : CVE-2016-9975
JSON object : View
Products Affected
                ibm
- jazz_for_service_management
 - dashboard_application_services_hub
 
CWE
                
                    
                        
                        CWE-352
                        
            Cross-Site Request Forgery (CSRF)
