IBM WebSphere Service Registry and Repository (WSRR) 8.5 before 8.5.0.1, when Chrome and WebSEAL are used, does not properly process ServiceRegistryDashboard logout actions, which allows remote attackers to bypass intended access restrictions by leveraging an unattended workstation.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2014-12-29T02:00:00
Updated: 2024-08-06T12:10:12.973Z
Reserved: 2014-09-02T00:00:00
Link: CVE-2014-6160
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-12-29T02:59:01.363
Modified: 2024-11-21T02:13:53.127
Link: CVE-2014-6160
Redhat
No data.