CVE-2014-3076: Infoleak
IBM Business Process Manager (BPM) 8.5 through 8.5.5 allows remote attackers to obtain potentially sensitive information by visiting an unspecified JSP diagnostic page.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3076?
CVE-2014-3076 is classified as having a moderate severity level due to the potential exposure of sensitive information.
How do I fix CVE-2014-3076?
To mitigate CVE-2014-3076, apply the latest patches or upgrades provided by IBM for Business Process Manager versions 8.5.0.0, 8.5.0.1, and 8.5.5.0.
What systems are affected by CVE-2014-3076?
CVE-2014-3076 affects IBM Business Process Manager versions 8.5.0.0, 8.5.0.1, and 8.5.5.0.
Can CVE-2014-3076 be exploited remotely?
Yes, CVE-2014-3076 can be exploited by remote attackers who access a specific JSP diagnostic page.
What information could be exposed by CVE-2014-3076?
CVE-2014-3076 may allow attackers to obtain potentially sensitive information from the affected IBM Business Process Manager installations.