IBM Security Bulletin: A Security Vulnerability has been fixed in IBM Security Privileged Identity Manager (CVE-2016-5964)

IBM Security Privileged Identity Manager Virtual Appliance uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

CVE(s): CVE-2016-5964

Affected product(s) and affected version(s):

IBM Security Privileged Identity Manager 2.0.2

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2exKAmH
X-Force Database: http://ift.tt/2f93Jb2



from IBM Product Security Incident Response Team http://ift.tt/2exOwDT