CVE-2016-9994
CVE-2016-9994
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
01 Mar 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Kenexa LCMS Premier on Cloud 9.0, and 10.0.0 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM Reference #: 1976805.
Affected products
IBM Corporation · Kenexa LCMS Premier on CloudWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →