Vulnerability Bulletins

IBM Security Bulletin: Security Vulnerability in Apache Axis affects IBM WebSphere Dashboard Framework (CVE-2014-3596)

   
Affected software IBM
 
There is an insecure certificate validation (CVE-2014-3596) in Apache Axis which is bundled with IBM WebSphere Dashboard Framework. CVE(s): CVE-2014-3596 Affected product(s) and affected version(s): All versions of WebSphere Dashboard Framework Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21695324 X-Force Database: http://xforce.iss.net/xforce/xfdb/95377

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_vulnerability_in_apache_axis_affects_ibm_websphere_dashboard_framework_cve_2014_3596?lang=en_us