CVE-2013-5431

Open redirect vulnerability in IBM Tivoli Federated Identity Manager (TFIM) 6.1.1 before IF 15, 6.2.0 before IF 14, 6.2.1, and 6.2.2 before IF 8 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.1.1 before IF 15, 6.2.0 before IF 14, 6.2.1, and 6.2.2 before IF 8 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 65%
VendorProductVersion
ibmtivoli_federated_identity_manager
6.1.1
ibmtivoli_federated_identity_manager
6.2.0
ibmtivoli_federated_identity_manager
6.2.1
ibmtivoli_federated_identity_manager
6.2.2
ibmtivoli_federated_identity_manager_business_gateway
6.1.1
ibmtivoli_federated_identity_manager_business_gateway
6.2.0
ibmtivoli_federated_identity_manager_business_gateway
6.2.1
ibmtivoli_federated_identity_manager_business_gateway
6.2.2
𝑥
= Vulnerable software versions