CVE-2016-6097

IBM Tivoli Key Lifecycle Manager 2.0.1, 2.5, and 2.6 allows web pages to be stored locally which can be read by another user on the system.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 MEDIUM
LOCAL
LOW
NONE
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
ibmsecurity_key_lifecycle_manager
2.5.0.0
ibmsecurity_key_lifecycle_manager
2.5.0.1
ibmsecurity_key_lifecycle_manager
2.5.0.2
ibmsecurity_key_lifecycle_manager
2.5.0.3
ibmsecurity_key_lifecycle_manager
2.5.0.4
ibmsecurity_key_lifecycle_manager
2.5.0.5
ibmsecurity_key_lifecycle_manager
2.5.0.6
ibmsecurity_key_lifecycle_manager
2.5.0.7
ibmsecurity_key_lifecycle_manager
2.6.0.0
ibmsecurity_key_lifecycle_manager
2.6.0.1
ibmsecurity_key_lifecycle_manager
2.6.0.2
ibmtivoli_key_lifecycle_manager
2.0.1
ibmtivoli_key_lifecycle_manager
2.0.1.1
ibmtivoli_key_lifecycle_manager
2.0.1.2
ibmtivoli_key_lifecycle_manager
2.0.1.3
ibmtivoli_key_lifecycle_manager
2.0.1.4
ibmtivoli_key_lifecycle_manager
2.0.1.5
ibmtivoli_key_lifecycle_manager
2.0.1.6
ibmtivoli_key_lifecycle_manager
2.0.1.7
ibmtivoli_key_lifecycle_manager
2.0.1.8
𝑥
= Vulnerable software versions