CVE-2016-6042: IBM Security Appscan

High severity, CVSS 7.3. EPSS: 2.6% chance of exploitation in the next 30 days.

IBM AppScan Enterprise Edition could allow a remote attacker to execute arbitrary code on the system, caused by improper handling of objects in memory. By persuading a victim to open specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code on the system in the same context as the victim.

Affected products

  • IBM Security Appscan: version 9.0.0.0 only; version 9.0.0.1 only; version 9.0.1.0 only; version 9.0.1.1 only; version 9.0.2.0 only; version 9.0.2.1 only; …

Published 2017-02-01. Last modified 2026-06-17.