IBM Security Privileged Identity Manager Virtual Appliance allows an authenticated user to upload malicious files that would be automatically executed by the server.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg21996614 | patch vendor advisory |
http://www.securityfocus.com/bid/95199 | vdb entry patch |