Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Rational Policy Tester 8.5 before 8.5.0.5 does not properly check authorization for changes to the set of authentication hosts, which allows remote authenticated users to perform spoofing attacks involving an HTTP redirect via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Rational Policy Tester 安全绕过漏洞
Vulnerability Description
IBM Rational Policy Tester(RPT)是美国IBM公司的一套自动化的在线遵从性解决方案。该解决方案主要用于测试Web应用访问质量、隐私和无障碍性遵循结果等遵从性问题。 IBM RPT 8.5.0.0至8.5.0.4版本中存在漏洞,该漏洞源于程序没有正确检查设置主机授权的更改。远程授权的用户可利用该漏洞执行包含HTTP重定向的欺骗攻击。
CVSS Information
N/A
Vulnerability Type
N/A