Open Redirect Vulnerability in IBM Curam Social Program Management
CVE-2017-1195
6.1MEDIUM
What is CVE-2017-1195?
IBM Curam Social Program Management versions 6.0, 6.1, 6.2, and 7.0 are susceptible to an open redirect vulnerability that allows remote attackers to perform phishing attacks. By luring victims to click on a specifically crafted link, attackers can manipulate the displayed URL, directing users to malicious sites that mimic trusted environments. This exploit enables the potential for sensitive data theft and can facilitate further malware delivery and attacks against the compromised users.
Affected Version(s)
Cram Social Program Management 6.0.4
Cram Social Program Management 6.0.5
Cram Social Program Management 6.1.0