Vulnerability in SSH Implementation of IBM Security Access Manager for Web Appliances
CVE-2015-5012
7.5HIGH
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 15 February 2016
What is CVE-2015-5012?
The SSH implementation on IBM Security Access Manager for Web appliances prior to specific versions fails to adequately restrict the set of MAC algorithms. This oversight could potentially allow remote attackers to bypass cryptographic protection measures, exposing systems to further vulnerabilities through unspecified vectors. Ensuring the deployment of patched versions can mitigate the risks associated with this vulnerability.