Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2016-9991
IBM Sterling Order Management 9.2 through 9.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 121314.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.002
EPSS Ranking
38.4%
CVSS Severity
CVSS v3 Score
8.0
CVSS v2 Score
6.0
References
http://www-01.ibm.com/support/docview.wss?uid=swg21998167
http://www.securityfocus.com/bid/96084
https://exchange.xforce.ibmcloud.com/vulnerabilities/121314
http://www-01.ibm.com/support/docview.wss?uid=swg21998167
http://www.securityfocus.com/bid/96084
https://exchange.xforce.ibmcloud.com/vulnerabilities/121314
Products affected by CVE-2016-9991
Ibm
»
Sterling Selling And Fulfillment Foundation
»
Version:
9.2.0
cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:9.2.0
Ibm
»
Sterling Selling And Fulfillment Foundation
»
Version:
9.2.1
cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:9.2.1
Ibm
»
Sterling Selling And Fulfillment Foundation
»
Version:
9.3.0
cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:9.3.0
Ibm
»
Sterling Selling And Fulfillment Foundation
»
Version:
9.4.0
cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:9.4.0
Ibm
»
Sterling Selling And Fulfillment Foundation
»
Version:
9.5.0
cpe:2.3:a:ibm:sterling_selling_and_fulfillment_foundation:9.5.0
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved