PT-2015-5491 · Ibm · Ibm Websphere Datapower Xc10

Published

2015-04-06

·

Updated

2016-08-04

·

CVE-2015-1893

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM WebSphere DataPower XC10 appliance version 2.1 before 2.1.0.3
Description The issue allows remote attackers to hijack the sessions of arbitrary users, and consequently obtain sensitive information or modify data, via unspecified vectors.
Recommendations For IBM WebSphere DataPower XC10 appliance version 2.1 before 2.1.0.3, update to version 2.1.0.3 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-1893

Affected Products

Ibm Websphere Datapower Xc10