Security Advisory

CVE-2015-1884

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-06-28 14:00:00
Last updated 2024-08-06 04:54:16
Assigner ibm
State PUBLISHED

Description

Directory traversal vulnerability in IBM Business Process Manager (BPM) 7.5.x through 7.5.1.2, 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, and 8.5.5 through 8.5.5.0 and WebSphere Lombardi Edition (WLE) 7.2 through 7.2.0.5 allows remote authenticated users to read arbitrary files via a crafted internationalization-file URL.