IBM Multi-Enterprise Integration Gateway 1.0 through 1.0.0.1 and B2B Advanced Communications 1.0.0.2 through 1.0.0.4 do not require HTTPS, which might allow remote attackers to obtain sensitive information by sniffing the network.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg1IT14835 | |
http://www-01.ibm.com/support/docview.wss?uid=swg21981462 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2016-05-15T01:00:00
Updated: 2016-05-15T01:57:01
Reserved: 2015-12-08T00:00:00
Link: CVE-2016-0341
JSON object: View
NVD Information
Status : Analyzed
Published: 2016-05-15T01:59:00.160
Modified: 2016-05-19T16:03:02.167
Link: CVE-2016-0341
JSON object: View
Redhat Information
No data.
CWE