← Back

CVE-2014-6078

nvd nist
Published: Dec 18, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 do not have a lockout period after invalid login attempts, which makes it easier for remote attackers to obtain admin access via a brute-force attack.

Affected (3)

2 products
Security Access Manager For Web
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0
Version 8.0

References (8)

Timeline

No history available yet.