Remote Access Vulnerability in IBM WebSphere DataPower XC10 Appliance
CVE-2014-3060
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 2 October 2014
Summary
An unspecified vulnerability in the IBM WebSphere DataPower XC10 appliance 2.5 enables remote attackers to gain administrative privileges. This can be exploited by leveraging access to an eXtreme Scale distributed ObjectGrid network and capturing a session cookie, allowing attackers to potentially manipulate or control sensitive operations within the appliance.
References
Timeline
Vulnerability published
Vulnerability Reserved