CVE-2016-5968
Severity CVSS v4.0:
Pending analysis
Type:
CWE-918
Server-Side Request Forgery (SSRF)
Publication date:
25/11/2016
Last modified:
12/04/2025
Description
The Replay Server in IBM Tealeaf Customer Experience 8.x before 8.7.1.8847 FP10, 8.8.x before 8.8.0.9049 FP9, 9.0.0 and 9.0.1 before 9.0.1.1117 FP5, 9.0.1A before 9.0.1.5108 FP5, 9.0.2 before 9.0.2.1223 FP3, and 9.0.2A before 9.0.2.5224 FP3 allows remote attackers to conduct SSRF attacks via unspecified vectors.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:ibm:tealeaf_customer_experience:*:*:*:*:*:*:*:* | 8.6 (including) | |
| cpe:2.3:a:ibm:tealeaf_customer_experience:8.7:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:8.8:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.0a:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.1a:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:ibm:tealeaf_customer_experience:9.0.2a:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



