← Back

CVE-2014-6086

nvd nist
Published: Dec 18, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 do not ensure that HTTPS is used, which allows remote attackers to obtain sensitive information by sniffing the network during an HTTP session.

Affected (3)

2 products
Security Access Manager For Web
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.0
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0
Version 8.0

References (8)

Timeline

No history available yet.