CVE-2014-6177
24.12.2014, 11:59
IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 and 7.5.x before 7.5.0.3 does not perform access-control checks for depth-0 retrieve operations, which allows remote authenticated users to obtain sensitive information via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | websphere_service_registry_and_repository | 7.0.0 |
ibm | websphere_service_registry_and_repository | 7.0.0.1 |
ibm | websphere_service_registry_and_repository | 7.0.0.2 |
ibm | websphere_service_registry_and_repository | 7.0.0.3 |
ibm | websphere_service_registry_and_repository | 7.0.0.4 |
ibm | websphere_service_registry_and_repository | 7.5.0.0 |
ibm | websphere_service_registry_and_repository | 7.5.0.1 |
ibm | websphere_service_registry_and_repository | 7.5.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References