2.1
CVSSv2

CVE-2014-6211

Published: 20/05/2015 Updated: 30/09/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The command-line scripts in IBM WebSphere Commerce 6.0 up to and including 6.0.0.11, 7.0 up to and including 7.0.0.9, and 7.0 Feature Pack 2 through 8, when debugging is configured, do not properly restrict the logging of personal data, which allows local users to obtain sensitive information by reading a log file.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere commerce 6.0.0.0

ibm websphere commerce 6.0.0.1

ibm websphere commerce 6.0.0.8

ibm websphere commerce 6.0.0.9

ibm websphere commerce 7.0.0.4

ibm websphere commerce 7.0.0.5

ibm websphere commerce 7.0.0.6

ibm websphere commerce 6.0.0.4

ibm websphere commerce 6.0.0.5

ibm websphere commerce 7.0

ibm websphere commerce 7.0.0.1

ibm websphere commerce 7.0.0.9

ibm websphere commerce 6.0.0.2

ibm websphere commerce 6.0.0.3

ibm websphere commerce 6.0.0.10

ibm websphere commerce 6.0.0.11

ibm websphere commerce 7.0.0.7

ibm websphere commerce 7.0.0.8

ibm websphere commerce 6.0.0.6

ibm websphere commerce 6.0.0.7

ibm websphere commerce 7.0.0.2

ibm websphere commerce 7.0.0.3