Vulnerability Bulletins

IBM Security Bulletin: Security vulnerability in Business Space affecting IBM Business Process Manager (BPM) and WebSphere Process Server (WPS) (CVE-2014-4746)

   
Affected software IBM
 
IBM Business Process Manager and WebSphere Process Server use different error codes that would allow a remote attacker to identify existing systems behind the firewall. CVE(s): CVE-2014-4746 Affected product(s) and affected version(s): IBM Business Process Manager Standard V7.5.x, 8.0.x 8.5.x IBM Business Process Manager Express V7.5.x, 8.0.x 8.5.x IBM Business Process Manager Advanced V7.5.x, 8.0.x 8.5.x WebSphere Process Server V7.0.0x If you are using an earlier unsupported

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_vulnerability_in_business_space_affecting_ibm_business_process_manager_bpm_and_websphere_process_server_wps_cve_2014_4746?lang=en_us