CVE-2014-6087: Medium severity ibm security access manager for web appliance vulnerability
IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and 8.x before 8.0.1 make it easier for remote attackers to obtain sensitive information by sniffing the network during use of a weak algorithm in an SSL cipher suite.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6087?
CVE-2014-6087 is considered a medium severity vulnerability due to its potential for sensitive information disclosure.
How do I fix CVE-2014-6087?
To fix CVE-2014-6087, update IBM Security Access Manager for Mobile and Web to the latest versions that disable weak SSL cipher suites.
Who is affected by CVE-2014-6087?
CVE-2014-6087 affects users of IBM Security Access Manager for Mobile versions prior to 8.0.1 and Security Access Manager for Web versions prior to 7.0.0 FP10 and 8.0.1.
What impact does CVE-2014-6087 have on security?
CVE-2014-6087 allows remote attackers to potentially intercept sensitive information due to the use of weak SSL cipher suites.
Is CVE-2014-6087 a known exploit?
As of the last update, CVE-2014-6087 has been reported but there is no public known exploit actively targeting this vulnerability.