CVE-2016-0300

EUVD-2016-0335
IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 might allow remote attackers to access arbitrary JSP pages via vectors related to improper input validation. IBM X-Force ID: 111412.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.4 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 33%
Affected Products (NVD)
VendorProductVersion
ibmtririga_application_platform
3.3.0.0
ibmtririga_application_platform
3.3.0.1
ibmtririga_application_platform
3.3.0.2
ibmtririga_application_platform
3.3.1.0
ibmtririga_application_platform
3.3.1.1
ibmtririga_application_platform
3.3.1.2
ibmtririga_application_platform
3.3.1.3
ibmtririga_application_platform
3.3.2.0
ibmtririga_application_platform
3.3.2.1
ibmtririga_application_platform
3.3.2.3
ibmtririga_application_platform
3.3.2.4
ibmtririga_application_platform
3.3.2.5
ibmtririga_application_platform
3.4.0.0
ibmtririga_application_platform
3.4.1.1
ibmtririga_application_platform
3.4.1.2
ibmtririga_application_platform
3.4.1.3
ibmtririga_application_platform
3.4.2.0
ibmtririga_application_platform
3.4.2.1
ibmtririga_application_platform
3.4.2.2
ibmtririga_application_platform
3.5.0.0
𝑥
= Vulnerable software versions