CVE-2015-1961
EUVD-2015-206613.07.2015, 16:59
The REST API in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0 allows remote authenticated users to bypass intended access restrictions and execute arbitrary JavaScript code on the server via an unspecified API call.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | business_process_manager | 7.5.0.0 |
| ibm | business_process_manager | 7.5.0.0 |
| ibm | business_process_manager | 7.5.0.0 |
| ibm | business_process_manager | 7.5.0.1 |
| ibm | business_process_manager | 7.5.0.1 |
| ibm | business_process_manager | 7.5.0.1 |
| ibm | business_process_manager | 7.5.1.0 |
| ibm | business_process_manager | 7.5.1.0 |
| ibm | business_process_manager | 7.5.1.0 |
| ibm | business_process_manager | 7.5.1.1 |
| ibm | business_process_manager | 7.5.1.1 |
| ibm | business_process_manager | 7.5.1.1 |
| ibm | business_process_manager | 8.0.0.0 |
| ibm | business_process_manager | 8.0.0.0 |
| ibm | business_process_manager | 8.0.0.0 |
| ibm | business_process_manager | 8.0.1.0 |
| ibm | business_process_manager | 8.0.1.0 |
| ibm | business_process_manager | 8.0.1.0 |
| ibm | business_process_manager | 8.0.1.1 |
| ibm | business_process_manager | 8.0.1.1 |
| ibm | business_process_manager | 8.0.1.1 |
| ibm | business_process_manager | 8.0.1.2 |
| ibm | business_process_manager | 8.0.1.2 |
| ibm | business_process_manager | 8.0.1.2 |
| ibm | business_process_manager | 8.0.1.3 |
| ibm | business_process_manager | 8.0.1.3 |
| ibm | business_process_manager | 8.0.1.3 |
| ibm | business_process_manager | 8.5.0.0 |
| ibm | business_process_manager | 8.5.0.0 |
| ibm | business_process_manager | 8.5.0.0 |
| ibm | business_process_manager | 8.5.0.1 |
| ibm | business_process_manager | 8.5.0.1 |
| ibm | business_process_manager | 8.5.0.1 |
| ibm | business_process_manager | 8.5.5.0 |
| ibm | business_process_manager | 8.5.5.0 |
| ibm | business_process_manager | 8.5.5.0 |
| ibm | business_process_manager | 8.5.6.0 |
| ibm | business_process_manager | 8.5.6.0 |
| ibm | business_process_manager | 8.5.6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References