CVE-2014-8895

Publication date

2015-01-29 01:00:00

Family

ibm

State

PUBLISHED

Description

IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote attackers to bypass intended access restrictions and read the image files of arbitrary users via a crafted URL.