IBM WebSphere Portal 8.0.0 before 8.0.0.1 CF13 and 8.5.0 through CF01 provides different error codes for firewall-traversal requests depending on whether the intranet host exists, which allows remote attackers to map the intranet network via a series of requests.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2014-08-12T01:00:00
Updated: 2024-08-06T11:27:36.300Z
Reserved: 2014-07-09T00:00:00
Link: CVE-2014-4746
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-08-12T05:01:03.950
Modified: 2024-11-21T02:10:49.080
Link: CVE-2014-4746
Redhat
No data.