CVE-2015-1884

Directory traversal vulnerability in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, and 8.5.5 through 8.5.5.0 and WebSphere Lombardi Edition (WLE) 7.2 through 7.2.0.5 allows remote authenticated users to read arbitrary files via a crafted internationalization-file URL.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:P/I:N/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 73%
VendorProductVersion
ibmbusiness_process_manager
7.5.0.0
ibmbusiness_process_manager
7.5.0.0
ibmbusiness_process_manager
7.5.0.0
ibmbusiness_process_manager
7.5.0.0
ibmbusiness_process_manager
7.5.0.1
ibmbusiness_process_manager
7.5.0.1
ibmbusiness_process_manager
7.5.0.1
ibmbusiness_process_manager
7.5.0.1
ibmbusiness_process_manager
7.5.1.0
ibmbusiness_process_manager
7.5.1.0
ibmbusiness_process_manager
7.5.1.0
ibmbusiness_process_manager
7.5.1.0
ibmbusiness_process_manager
7.5.1.1
ibmbusiness_process_manager
7.5.1.1
ibmbusiness_process_manager
7.5.1.1
ibmbusiness_process_manager
7.5.1.1
ibmbusiness_process_manager
7.5.1.2
ibmbusiness_process_manager
7.5.1.2
ibmbusiness_process_manager
7.5.1.2
ibmbusiness_process_manager
7.5.1.2
ibmbusiness_process_manager
8.0.0.0
ibmbusiness_process_manager
8.0.0.0
ibmbusiness_process_manager
8.0.0.0
ibmbusiness_process_manager
8.0.0.0
ibmbusiness_process_manager
8.0.1.0
ibmbusiness_process_manager
8.0.1.0
ibmbusiness_process_manager
8.0.1.0
ibmbusiness_process_manager
8.0.1.0
ibmbusiness_process_manager
8.0.1.1
ibmbusiness_process_manager
8.0.1.1
ibmbusiness_process_manager
8.0.1.1
ibmbusiness_process_manager
8.0.1.1
ibmbusiness_process_manager
8.0.1.2
ibmbusiness_process_manager
8.0.1.2
ibmbusiness_process_manager
8.0.1.2
ibmbusiness_process_manager
8.0.1.2
ibmbusiness_process_manager
8.0.1.3
ibmbusiness_process_manager
8.0.1.3
ibmbusiness_process_manager
8.0.1.3
ibmbusiness_process_manager
8.5.0.0
ibmbusiness_process_manager
8.5.0.0
ibmbusiness_process_manager
8.5.0.0
ibmbusiness_process_manager
8.5.0.0
ibmbusiness_process_manager
8.5.0.1
ibmbusiness_process_manager
8.5.0.1
ibmbusiness_process_manager
8.5.0.1
ibmbusiness_process_manager
8.5.0.1
ibmbusiness_process_manager
8.5.5.0
ibmbusiness_process_manager
8.5.5.0
ibmbusiness_process_manager
8.5.5.0
ibmbusiness_process_manager
8.5.5.0
ibmwebsphere
7.2
ibmwebsphere
7.2.0.1
ibmwebsphere
7.2.0.2
ibmwebsphere
7.2.0.3
ibmwebsphere
7.2.0.4
ibmwebsphere
7.2.0.5
𝑥
= Vulnerable software versions