Vulnerability Name: CVE-2016-0359 (CCN-111929) Assigned: 2015-12-08 Published: 2016-06-27 Updated: 2017-09-01 Summary: CRLF injection vulnerability in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.43, 8.0 before 8.0.0.13, 8.5 Full before 8.5.5.10, and 8.5 Liberty before Liberty Fix Pack 16.0.0.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL. <a href="https://cwe.mitre.org/data/definitions/93.html">CWE-93: Improper Neutralization of CRLF Sequences ('CRLF Injection')</a> CVSS v3 Severity: 6.1 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N )5.3 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N/E:U/RL:O/RC:C )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): RequiredScope: Scope (S): ChangedImpact Metrics: Confidentiality (C): LowIntegrity (I): LowAvailibility (A): None
6.1 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N )5.3 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N/E:U/RL:O/RC:C )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): RequiredScope: Scope (S): ChangedImpact Metrics: Confidentiality (C): LowIntegrity (I): LowAvailibility (A): None
CVSS v2 Severity: 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAuthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): PartialAvailibility (A): None
5.5 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAthentication (Au): Single_InstanceImpact Metrics: Confidentiality (C): PartialIntegrity (I): PartialAvailibility (A): None
Vulnerability Type: CWE-Other Vulnerability Consequences: Cross-Site Scripting References: Source: MITRE Type: CNACVE-2016-0359 Source: AIXAPAR Type: UNKNOWNPI58918 Source: CCN Type: IBM Security Bulletin 1982526 (WebSphere Application Server)HTTP Response Splitting in WebSphere Application Server (CVE-2016-0359) Source: CONFIRM Type: Vendor Advisoryhttp://www-01.ibm.com/support/docview.wss?uid=swg21982526 Source: CCN Type: IBM Security Bulletin 1984977 (WebSphere Application Server for Bluemix)Multiple security vulnerabilities affect IBM WebSphere Application Server for Bluemix Source: CCN Type: IBM Security Bulletin 1986006 (Liberty for Java for Bluemix)Several vulnerabilities affect Liberty for Java for IBM Bluemix (CVE-2016-2923, CVE-2016-2945, CVE-2016-0359) Source: CCN Type: IBM Security Bulletin N1021453 (i)IBM i Integrated Web Application Server version 8.5 is affected by vulnerabilities CVE-2016-0359 and CVE-2016-2923. Source: CCN Type: IBM Security Bulletin S1009661 (TS7700 virtual tape systems)HTTP Response Splitting in WebSphere Application Server affects IBM Virtualization Engine TS7700 (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1986310 (Tivoli Storage Manager FastBack for Workstations)HTTP response splitting attack in FastBack for Workstations Central Administration Console (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1988267 (Support Assistant)Security vulnerabilities have been identified in WebSphere Application Server shipped with IBM Support Assistant Team Server (CVE-2016-0359, CVE-2016-0378, CVE-2016-5986) Source: CCN Type: IBM Security Bulletin 1990062 (Watson Explorer)Vulnerabilities exist in Watson Explorer Analytical Components, Watson Content Analytics, and OmniFind Enterprise Edition (CVE-2016-0359, CVE-2016-3092, CVE-2016-3485) Source: CCN Type: IBM Security Bulletin 1990451 (Tivoli Monitoring V6)Multiple vulnerabilities affect IBM Tivoli Monitoring embedded WebSphere Application Server Source: CCN Type: IBM Security Bulletin 1991050 (Streams) IBM Streams may be impacted by a vulnerability in WebSphere Liberty (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1991096 (MessageSight)HTTP Response Splitting in Liberty affects IBM MessageSight (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1991299 (InfoSphere Information Server)IBM InfoSphere Information Server is vulnerable to a HTTP response splitting vulnerability (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1992802 (Connections Docs)Response splitting vulnerability in WebSphere Application server impacts IBM Connections Docs (CVE-2016-0359 ) Source: CCN Type: IBM Security Bulletin 1994916 (License Metric Tool)A security vulnerabilities has been identified in WebSphere Liberty Profile shipped with IBM License Metric Tool v9 and IBM BigFix Inventory v9 Source: CCN Type: IBM Security Bulletin 1995289 (Security Access Manager)IBM Security Access Manager appliances are affected by a response splitting vulnerability in WebSphere Application Server (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1995691 (Cognos Business Intelligence)IBM Cognos Business Intelligence Server 2016Q4 Security Updater : IBM Cognos Business Intelligence Server is affected by multiple vulnerabilities. Source: CCN Type: IBM Security Bulletin 1995763 (Tivoli Application Dependency Discovery Manager)IBM WebSphere Application Server Liberty Profile vulnerability affects IBM Tivoli Application Dependency Discovery Manager (TADDM) (CVE-2016-0359) Source: CCN Type: IBM Security Bulletin 1996032 (Tivoli Common Reporting)IBM Tivoli Common Reporting (TCR) 2016Q4 Security Updater : TCR is affected by multiple vulnerabilities. Source: CCN Type: IBM Security Bulletin 1996417 (Cognos Analytics)IBM Cognos Analytics is affected by multiple vulnerabilities Source: CCN Type: IBM Security Bulletin 1996820 (Emptoris Strategic Supply Management)Multiple vulnerabilities in IBM Java SDK and IBM WebSphere Application Server affect IBM Emptoris Strategic Supply Management and IBM Emptoris Services Procurement Source: CCN Type: IBM Security Bulletin 2000740 (Cognos Controller)Multiple vulnerabilities have been identified in IBM Cognos Controller Source: BID Type: UNKNOWN91484 Source: CCN Type: BID-91484IBM WebSphere Application Server CVE-2016-0359 HTTP Response Splitting Vulnerability Source: SECTRACK Type: UNKNOWN1036184 Source: XF Type: UNKNOWNibm-was-cve20160359-response-splitting(111929) Vulnerable Configuration: Configuration 1 :cpe:/a:ibm:websphere_application_server:7.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.1:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.2:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.3:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.4:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.5:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.6:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.7:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.8:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.9:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.10:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.11:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.12:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.13:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.14:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.15:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.16:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.17:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.18:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.19:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.21:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.22:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.23:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.24:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.25:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.27:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.28:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.29:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.31:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.32:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.33:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.34:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.35:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.36:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.37:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.38:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.39:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:7.0.0.41:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.1:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.2:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.3:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.4:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.5:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.6:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.7:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.8:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.9:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.10:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.11:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0.0.12:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.0.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.0.0:-:liberty_profile:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.4:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.5:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.6:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.7:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.8:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5.9:*:*:*:*:*:*:* Configuration CCN 1 :cpe:/a:ibm:websphere_application_server:7.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.0:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5:*:*:*:*:*:*:* OR cpe:/a:ibm:websphere_application_server:8.5.5:*:*:*:*:*:*:* AND cpe:/a:ibm:cognos_business_intelligence:10.1.1:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_business_intelligence:10.2:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_business_intelligence:10.2.1:*:*:*:*:*:*:* OR cpe:/a:ibm:messagesight_jms_client:1.1.0.0:*:*:*:*:*:*:* OR cpe:/a:ibm:infosphere_information_server:11.3:*:*:*:*:*:*:* OR cpe:/o:ibm:i:6.1:*:*:*:*:*:*:* OR cpe:/o:ibm:i:7.1:*:*:*:*:*:*:* OR cpe:/o:ibm:i:7.2:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_business_intelligence:10.2.2:*:*:*:*:*:*:* OR cpe:/a:ibm:messagesight:1.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_common_reporting:3.1:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_common_reporting:3.1.0.1:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_common_reporting:3.1.0.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3.1:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3.3:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3.4:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.3.5:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.1:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.3:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.4:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_controller:10.2.1:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_controller:10.2.0:*:*:*:*:*:*:* OR cpe:/a:ibm:license_metric_tool:9.2.0:*:*:*:*:*:*:* OR cpe:/a:ibm:infosphere_information_server:11.5:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_common_reporting:3.1.2.1:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_analytics:11.0.0:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:9.0.0.1:*:*:*:*:*:*:* OR cpe:/o:ibm:i:7.3:*:*:*:*:*:*:* OR cpe:/a:ibm:emptoris:strategic_supply_management:10.0.0.0:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.5:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.3.0.6:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.2:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.3:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.4:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.5:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.6:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.7:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.8:*:*:*:*:*:*:* OR cpe:/a:ibm:tivoli_monitoring:6.2.2.9:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0.1:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0.2:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0.3:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0.4:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.0.5:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.1:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.1.2:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.1.3:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:8.0.1.4:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:9.0.0:*:*:*:*:*:*:* OR cpe:/o:ibm:security_access_manager:9.0.1.0:*:*:*:*:*:*:* OR cpe:/a:ibm:cognos_analytics:11.0.0:*:*:*:*:*:*:* OR cpe:/a:ibm:emptoris:strategic_supply_management:*:*:*:*:*:*:* Denotes that component is vulnerable BACK
ibm websphere application server 7.0
ibm websphere application server 7.0.0.0
ibm websphere application server 7.0.0.1
ibm websphere application server 7.0.0.2
ibm websphere application server 7.0.0.3
ibm websphere application server 7.0.0.4
ibm websphere application server 7.0.0.5
ibm websphere application server 7.0.0.6
ibm websphere application server 7.0.0.7
ibm websphere application server 7.0.0.8
ibm websphere application server 7.0.0.9
ibm websphere application server 7.0.0.10
ibm websphere application server 7.0.0.11
ibm websphere application server 7.0.0.12
ibm websphere application server 7.0.0.13
ibm websphere application server 7.0.0.14
ibm websphere application server 7.0.0.15
ibm websphere application server 7.0.0.16
ibm websphere application server 7.0.0.17
ibm websphere application server 7.0.0.18
ibm websphere application server 7.0.0.19
ibm websphere application server 7.0.0.21
ibm websphere application server 7.0.0.22
ibm websphere application server 7.0.0.23
ibm websphere application server 7.0.0.24
ibm websphere application server 7.0.0.25
ibm websphere application server 7.0.0.27
ibm websphere application server 7.0.0.28
ibm websphere application server 7.0.0.29
ibm websphere application server 7.0.0.31
ibm websphere application server 7.0.0.32
ibm websphere application server 7.0.0.33
ibm websphere application server 7.0.0.34
ibm websphere application server 7.0.0.35
ibm websphere application server 7.0.0.36
ibm websphere application server 7.0.0.37
ibm websphere application server 7.0.0.38
ibm websphere application server 7.0.0.39
ibm websphere application server 7.0.0.41
ibm websphere application server 8.0
ibm websphere application server 8.0.0.0
ibm websphere application server 8.0.0.1
ibm websphere application server 8.0.0.2
ibm websphere application server 8.0.0.3
ibm websphere application server 8.0.0.4
ibm websphere application server 8.0.0.5
ibm websphere application server 8.0.0.6
ibm websphere application server 8.0.0.7
ibm websphere application server 8.0.0.8
ibm websphere application server 8.0.0.9
ibm websphere application server 8.0.0.10
ibm websphere application server 8.0.0.11
ibm websphere application server 8.0.0.12
ibm websphere application server 8.5.0.0
ibm websphere application server 8.5.0.0 -
ibm websphere application server 8.5.5.4
ibm websphere application server 8.5.5.5
ibm websphere application server 8.5.5.6
ibm websphere application server 8.5.5.7
ibm websphere application server 8.5.5.8
ibm websphere application server 8.5.5.9
ibm websphere application server 7.0
ibm websphere application server 8.0
ibm websphere application server 8.5
ibm websphere application server 8.5.5
ibm cognos business intelligence 10.1.1
ibm cognos business intelligence 10.2
ibm cognos business intelligence 10.2.1
ibm messagesight jms client 1.1.0.0
ibm infosphere information server 11.3
ibm i 6.1
ibm i 7.1
ibm i 7.2
ibm cognos business intelligence 10.2.2
ibm messagesight 1.2
ibm tivoli common reporting 3.1
ibm tivoli common reporting 3.1.0.1
ibm tivoli common reporting 3.1.0.2
ibm tivoli monitoring 6.2.2
ibm tivoli monitoring 6.2.3
ibm tivoli monitoring 6.3.0
ibm tivoli monitoring 6.2.3.1
ibm tivoli monitoring 6.2.3.2
ibm tivoli monitoring 6.2.3.3
ibm tivoli monitoring 6.2.3.4
ibm tivoli monitoring 6.2.3.5
ibm tivoli monitoring 6.3.0
ibm tivoli monitoring 6.3.0.1
ibm tivoli monitoring 6.3.0.2
ibm tivoli monitoring 6.3.0.3
ibm tivoli monitoring 6.3.0.4
ibm cognos controller 10.2.1
ibm cognos controller 10.2.0
ibm license metric tool 9.2.0
ibm infosphere information server 11.5
ibm tivoli common reporting 3.1.2.1
ibm cognos analytics 11.0.0.0
ibm security access manager 9.0.0.1
ibm i 7.3
ibm emptoris strategic_supply_management 10.0.0.0
ibm tivoli monitoring 6.3.0.5
ibm tivoli monitoring 6.3.0.6
ibm tivoli monitoring 6.2.2.2
ibm tivoli monitoring 6.2.2.3
ibm tivoli monitoring 6.2.2.4
ibm tivoli monitoring 6.2.2.5
ibm tivoli monitoring 6.2.2.6
ibm tivoli monitoring 6.2.2.7
ibm tivoli monitoring 6.2.2.8
ibm tivoli monitoring 6.2.2.9
ibm security access manager 8.0.0
ibm security access manager 8.0.0.1
ibm security access manager 8.0.0.2
ibm security access manager 8.0.0.3
ibm security access manager 8.0.0.4
ibm security access manager 8.0.0.5
ibm security access manager 8.0.1
ibm security access manager 8.0.1.2
ibm security access manager 8.0.1.3
ibm security access manager 8.0.1.4
ibm security access manager 9.0.0
ibm security access manager 9.0.1.0
ibm cognos analytics 11.0.0.0
ibm emptoris strategic_supply_management