Vulnerability Bulletins

IBM Security Bulletin: File path traversal vulnerability affecting IBM Business Process Manager Process Center (CVE-2014-6182)

   
Affected software IBM
 
An export function in IBM Business Process Manager Process Center is vulnerable to file path traversal. As a result, sensitive files might be downloaded. CVE(s): CVE-2014-6182 Affected product(s) and affected version(s): IBM Business Process Manager Standard V8.0.x 8.5.x IBM Business Process Manager Express V8.0.x 8.5.x IBM Business Process Manager Advanced V8.0.x 8.5.x Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_file_path_traversal_vulnerability_affecting_ibm_business_process_manager_process_center_cve_2014_6182?lang=en_us