CVE-2014-6088

IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 allow remote attackers to obtain sensitive information by sniffing the network during use of the null SSL cipher.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:security_access_manager_for_web:7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_access_manager_for_web:8.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:ibm:security_access_manager_for_mobile:8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-12-18 16:59

Updated : 2024-02-04 18:35


NVD link : CVE-2014-6088

Mitre link : CVE-2014-6088

CVE.ORG link : CVE-2014-6088


JSON object : View

Products Affected

ibm

  • security_access_manager_for_mobile
  • security_access_manager_for_web
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor