CVE-2014-0946

The RES Console in Rule Execution Server in IBM Operational Decision Manager 7.5 before FP3 IF37, 8.0 before MP1 FP2, and 8.5 before MP1 IF26 does not send appropriate Cache-Control HTTP headers, which allows remote attackers to obtain sensitive information by leveraging an unattended workstation.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:operational_decision_manager:7.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:operational_decision_manager:8.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:operational_decision_manager:8.5:*:*:*:*:*:*:*

Information

Published : 2014-05-09 03:50

Updated : 2017-08-28 18:34


NVD link : CVE-2014-0946

Mitre link : CVE-2014-0946


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

ibm

  • operational_decision_manager