CVE-2014-6088

IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 allow remote attackers to obtain sensitive information by sniffing the network during use of the null SSL cipher.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:security_access_manager_for_web:7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_access_manager_for_web:8.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:ibm:security_access_manager_for_mobile:8.0:*:*:*:*:*:*:*

Information

Published : 2014-12-18 16:59

Updated : 2017-09-08 01:29


NVD link : CVE-2014-6088

Mitre link : CVE-2014-6088


JSON object : View

Products Affected

ibm

  • security_access_manager_for_web
  • security_access_manager_for_mobile
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor