The IBM WebSphere DataPower XC10 appliance 2.1 before 2.1.0.3 allows remote attackers to hijack the sessions of arbitrary users, and consequently obtain sensitive information or modify data, via unspecified vectors.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Websphere_datapower_xc10_appliance_firmware | Ibm | 2.1.0.0 (including) | 2.1.0.0 (including) |
| Websphere_datapower_xc10_appliance_firmware | Ibm | 2.1.0.1 (including) | 2.1.0.1 (including) |
| Websphere_datapower_xc10_appliance_firmware | Ibm | 2.1.0.2 (including) | 2.1.0.2 (including) |