CVE-2017-1407: IBM Security Identity Governance And Intelligence
High severity, CVSS 8.8. EPSS: 3.4% chance of exploitation in the next 30 days.
IBM Security Identity Manager Virtual Appliance 6.0 and 7.0 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 127394.
Affected products
- IBM Security Identity Governance And Intelligence: version 5.2.0 only; version 5.2.1 only
- IBM Security Identity Manager: version 6.0.0.0 only; version 7.0.0.0 only
- IBM Security Privileged Identity Manager: version 2.0.0 only; version 2.0.1 only; version 2.0.2 only
Published 2017-09-28. Last modified 2026-06-17.