Remote Access Vulnerability in IBM WebSphere DataPower XC10 Appliance
CVE-2014-3060

Currently unrated

Key Information:

Summary

An unspecified vulnerability in the IBM WebSphere DataPower XC10 appliance 2.5 enables remote attackers to gain administrative privileges. This can be exploited by leveraging access to an eXtreme Scale distributed ObjectGrid network and capturing a session cookie, allowing attackers to potentially manipulate or control sensitive operations within the appliance.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.