IBM Security Bulletin: IBM InfoSphere Master Data Management Server is vulnerable to a Cross Site Request Forgery discovered in MDM User Interface (CVE-2016-9716)

IBM InfoSphere Master Data Management Server is vulnerable to a Cross Site Request Forgery which could allow an attacker to execute malicious and unauthrized actions.

CVE(s): CVE-2016-9716

Affected product(s) and affected version(s):

This vulnerability is known to affect the following offerings:

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2tJglg7
X-Force Database: http://ift.tt/2v6m4Ai

The post IBM Security Bulletin: IBM InfoSphere Master Data Management Server is vulnerable to a Cross Site Request Forgery discovered in MDM User Interface (CVE-2016-9716) appeared first on IBM PSIRT Blog.

Affected IBM InfoSphere Master Data Management ServerAffected Versions
IBM InfoSphere Master Data Management11.0
IBM InfoSphere Master Data Management11.3
IBM InfoSphere Master Data Management11.4
IBM InfoSphere Master Data Management11.5
IBM InfoSphere Master Data Management11.6


from IBM Product Security Incident Response Team http://ift.tt/2tJjn42