CVE-2015-0174: Infoleak
The SNMP implementation in IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.5 does not properly handle configuration data, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0174?
CVE-2015-0174 has a medium severity rating that indicates a potential for information disclosure due to improper handling of configuration data.
How do I fix CVE-2015-0174?
To fix CVE-2015-0174, you should upgrade to IBM WebSphere Application Server version 8.5.5.5 or later.
Who is affected by CVE-2015-0174?
CVE-2015-0174 affects remote authenticated users of IBM WebSphere Application Server versions 8.5.0.0 to 8.5.5.4.
What type of vulnerability is CVE-2015-0174?
CVE-2015-0174 is identified as an information disclosure vulnerability due to flaws in the SNMP implementation.
Can CVE-2015-0174 be exploited remotely?
Yes, CVE-2015-0174 can be exploited remotely by authenticated users to access sensitive information.