Information Disclosure Vulnerability in IBM Security Access Manager Products
CVE-2014-6088
Currently unrated
What is CVE-2014-6088?
IBM Security Access Manager for Mobile and Web prior to specified versions are susceptible to an information disclosure vulnerability. Attackers can exploit this flaw by sniffing network traffic to capture sensitive data during the use of a null SSL cipher. The vulnerability highlights the importance of using strong encryption standards to protect data in transit.