Authentication Bypass in IBM Platform Symphony Developer Edition
CVE-2013-5400

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
14 February 2014

Summary

The IBM Platform Symphony Developer Edition versions 5.2 and 6.1.x up to 6.1.1 contain a serious vulnerability that features hardcoded credentials in an unspecified servlet. This flaw allows an attacker to bypass authentication mechanisms, thereby gaining unauthorized 'local environment' access. Such access could enable malicious actors to exploit the system further, posing significant security risks to the platform.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.