CVE-2014-0888

IBM Worklight Foundation 5.x-6.x - Authenticated Application Authenticity Bypass

Title source: llm
STIX 2.1

Description

IBM Worklight Foundation 5.x and 6.x before 6.2.0.0, as used in Worklight and Mobile Foundation, allows remote authenticated users to bypass the application-authenticity feature via unspecified vectors.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21682798
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/91239

Scores

EPSS 0.0096
EPSS Percentile 58.0%

Details

CWE
CWE-264
Status published
Products (28)
ibm/mobile_foundation 5.0.0.0
ibm/mobile_foundation 5.0.0.1
ibm/mobile_foundation 5.0.0.2
ibm/mobile_foundation 5.0.0.3
ibm/mobile_foundation 5.0.5.0
ibm/mobile_foundation 5.0.5.1
ibm/mobile_foundation 5.0.6.0
ibm/mobile_foundation 5.0.6.1
ibm/mobile_foundation 5.0.6.2
ibm/mobile_foundation 6.0.0.0
... and 18 more
Published Aug 29, 2014
Tracked Since Feb 18, 2026