Vulnerability Details CVE-2014-4809
The WebSEAL component in IBM Security Access Manager for Web 7.x before 7.0.0-ISS-WGA-IF0009 and 8.x before 8.0.0-ISS-WGA-FP0005, when e-community SSO is enabled, allows remote attackers to cause a denial of service (component hang) via unspecified vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.2%
CVSS Severity
CVSS v2 Score 7.1
Products affected by CVE-2014-4809
-
cpe:2.3:h:ibm:security_access_manager_for_web_appliance:7.0
-
cpe:2.3:h:ibm:security_access_manager_for_web_appliance:8.0
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.0
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.1
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.2
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.3
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.4
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.5
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.6
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.7
-
cpe:2.3:o:ibm:security_access_manager_for_web_7.0_firmware:7.0.0.8
-
cpe:2.3:o:ibm:security_access_manager_for_web_8.0_firmware:8.0.0.2
-
cpe:2.3:o:ibm:security_access_manager_for_web_8.0_firmware:8.0.0.3
-
cpe:2.3:o:ibm:security_access_manager_for_web_8.0_firmware:8.0.0.4