First published: Tue Oct 22 2013(Updated: )
The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which has unspecified impact and remote attack vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere DataPower XC10 Appliance | ||
Ibm Websphere Datapower Xc10 Appliance Firmware | =2.1.0.0 | |
Ibm Websphere Datapower Xc10 Appliance Firmware | =2.5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5446 has an unspecified severity rating but poses risks related to remote attack vectors.
To fix CVE-2013-5446, update to a version of IBM WebSphere DataPower XC10 that addresses logoff processing issues.
CVE-2013-5446 affects IBM WebSphere DataPower XC10 appliances running versions 2.1.0 and 2.5.0.
CVE-2013-5446 is classified with remote attack vectors.
The impact of CVE-2013-5446 includes potential security risks due to improper processing of logoff actions.