IBM Security Key Lifecycle Manager 2.7 and 3.0 could allow an unauthenticated user to restart the SKLM server due to missing authentication. IBM X-Force ID: 148424.
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/105554 | vdb entry third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/148424 | vdb entry |
https://www.ibm.com/support/docview.wss?uid=ibm10733355 | patch vendor advisory |