Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2015-5018

IBM Security Access Manager for Web 7.0.0 before FP19 and 8.0 before 8.0.1.3 IF3, and Security Access Manager 9.0 before 9.0.0.0 IF1, allows remote authenticated users to execute arbitrary OS commands by leveraging Local Management Interface (LMI) access.

  • Published: Jan 2, 2016
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-5018
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8
  • AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 8.5
  • AV:N/AC:M/Au:S/C:C/I:C/A:C

CWEs:

OWASP TOP 10:

Software From Fixed in
ibm / security_access_manager_for_web_8.0_firmware 8.0.1.3 8.0.1.3.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.7 7.0.0.7.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.2 7.0.0.2.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.11 7.0.0.11.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.12 7.0.0.12.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.1.2 8.0.1.2.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.15 7.0.0.15.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.4 7.0.0.4.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.14 7.0.0.14.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.1 8.0.1.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.13 7.0.0.13.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.5 7.0.0.5.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.0.1 8.0.0.1.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.3 7.0.0.3.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.16 7.0.0.16.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.10 7.0.0.10.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.0.3 8.0.0.3.x
ibm / security_access_manager_9.0_firmware 9.0.0 9.0.0.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.1 7.0.0.1.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.1.0 8.0.1.0.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.9 7.0.0.9.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.6 7.0.0.6.x
ibm / security_access_manager_for_web_7.0_firmware 7.0.0.8 7.0.0.8.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.0.5 8.0.0.5.x
ibm / security_access_manager_for_web_8.0_firmware 8.0.0.2 8.0.0.2.x