SSL Cipher Suite Weakness in IBM Security Access Manager for Mobile and Web
CVE-2014-6087

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
18 December 2014

Summary

The vulnerability in IBM Security Access Manager for Mobile and Web stems from the use of a weak algorithm in an SSL cipher suite, which allows remote attackers to sniff network traffic and capture sensitive information during transmission. The affected versions of both products fail to employ adequate encryption methods, thereby increasing the risk of unauthorized data exposure.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.