Information Disclosure in IBM WebSphere Portal UTL Portlet
CVE-2014-3056
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 29 July 2014
Summary
The Unified Task List (UTL) Portlet in IBM WebSphere Portal versions 7.x and 8.x, including 8.0.0.1 CF12, has a vulnerability that allows remote attackers to access sensitive information. This can include critical details about environment variables and installed JAR versions through unspecified methods, potentially leading to further exploitation.
References
Timeline
Vulnerability published
Vulnerability Reserved