Vulnerability Bulletins

IBM Security Bulletin: IBM WebSphere Commerce is vulnerable to an information disclosure vulnerability in the WebSphere Commerce Accelerator tool (CVE-2016-0225)

   
Affected software IBM
 
IBM WebSphere Commerce could allow a user logged into Commerce Accelerator, as an administrator, to see highly sensitive information that they should not have access to. CVE(s): CVE-2016-0225Affected product(s) and affected version(s):WebSphere Commerce versions 7.0.0.0 - 7.0.0.9 WebSphere Commerce versions 6.0.0.0 - 6.0.0.11 Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_websphere_commerce_is_vulnerable_to_an_information_disclosure_vulnerability_in_the_websphere_commerce_accelerator_tool_cve_2016_0225?lang=en_us