First published: Thu Oct 02 2014(Updated: )
Unspecified vulnerability in the Administrative Console on the IBM WebSphere DataPower XC10 appliance 2.5 allows remote attackers to obtain administrative privileges by leveraging access to an eXtreme Scale distributed ObjectGrid network.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Websphere Datapower Xc10 Appliance Firmware | =2.5.0.0 | |
IBM WebSphere DataPower XC10 Appliance |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3059 is considered a critical vulnerability due to the potential for remote attackers to gain administrative privileges.
To fix CVE-2014-3059, upgrade to the latest version of IBM WebSphere DataPower XC10 appliance firmware that addresses this vulnerability.
CVE-2014-3059 affects the IBM WebSphere DataPower XC10 appliance, specifically version 2.5.0.0.
Yes, CVE-2014-3059 can potentially lead to data breaches if attackers exploit the vulnerability to obtain administrative access.
There are no documented workarounds for CVE-2014-3059, so upgrading the firmware is the recommended action.