Vulnerability Bulletins

IBM Security Bulletin: TRIRIGA Application Platform Authorization Bypass Vulnerability. (CVE-2014-8895)

   
Affected software IBM
 
IBM TRIRIGA Application Platform could allow a remote attacker to view image files uploaded by other users through the use of a specially crafted URL. CVE(s): CVE-2014-8895 Affected product(s) and affected version(s): IBM TRIRIGA Application Platform 3.4.1 and earlier versions IBM TRIRIGA Application Platform 3.3.2.2 and earlier versions IBM TRIRIGA Application Platform 3.2.1 and earlier versions Refer to the following reference URLs for remediation and additional vulnerability details:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_tririga_application_platform_authorization_bypass_vulnerability_cve_2014_8895?lang=en_us