Vulnerability Bulletins

IBM Security Bulletin: WebSphere Commerce is affected by an information disclosure vulnerability (CVE-2015-0200)

   
Affected software IBM
 
WebSphere Commerece does not properly remove sensitive data from the database after data has been modified. CVE(s): CVE-2015-0200 Affected product(s) and affected version(s): WebSphere Commerce versions 6.0.0.0 - 6.0.0.11 WebSphere Commerce versions 7.0.0.1 - 7.0.0.8 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_websphere_commerce_is_affected_by_an_information_disclosure_vulnerability_cve_2015_0200?lang=en_us