CVE Vulnerabilities

CVE-2014-6136

Published: Feb 02, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Security AppScan Standard 8.x and 9.x before 9.0.1.1 FP1 supports unencrypted sessions, which allows remote attackers to obtain sensitive information by sniffing the network.

Affected Software

NameVendorStart VersionEnd Version
Security_appscanIbm8.0.0.0 (including)8.0.0.0 (including)
Security_appscanIbm8.0.0.1 (including)8.0.0.1 (including)
Security_appscanIbm8.0.0.2 (including)8.0.0.2 (including)
Security_appscanIbm8.0.0.3 (including)8.0.0.3 (including)
Security_appscanIbm8.5.0.0 (including)8.5.0.0 (including)
Security_appscanIbm8.5.0.1 (including)8.5.0.1 (including)
Security_appscanIbm8.6.0.0 (including)8.6.0.0 (including)
Security_appscanIbm8.6.0.1 (including)8.6.0.1 (including)
Security_appscanIbm8.7.0.0 (including)8.7.0.0 (including)
Security_appscanIbm8.7.0.1 (including)8.7.0.1 (including)
Security_appscanIbm8.8.0.0 (including)8.8.0.0 (including)
Security_appscanIbm9.0.0.0 (including)9.0.0.0 (including)
Security_appscanIbm9.0.0.1 (including)9.0.0.1 (including)
Security_appscanIbm9.0.1.0 (including)9.0.1.0 (including)
Security_appscanIbm9.0.1.1 (including)9.0.1.1 (including)

References