CVE-2014-0867

rcore6/main/addcookie.jsp in RICOS in IBM Algo Credit Limits (aka ACLM) 4.5.0 through 4.7.0 before 4.7.0.03 FP5 in IBM Algorithmics allows remote attackers to create or modify cookies via the query string.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:algo_credit_limits:4.5.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:algo_credit_limits:4.7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:algorithmics:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:02

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/127304/IBM-Algorithmics-RICOS-Disclosure-XSS-CSRF.html - () http://packetstormsecurity.com/files/127304/IBM-Algorithmics-RICOS-Disclosure-XSS-CSRF.html -
References () http://seclists.org/fulldisclosure/2014/Jun/173 - () http://seclists.org/fulldisclosure/2014/Jun/173 -
References () http://www-01.ibm.com/support/docview.wss?uid=swg21675881 - Vendor Advisory () http://www-01.ibm.com/support/docview.wss?uid=swg21675881 - Vendor Advisory
References () http://www.securityfocus.com/archive/1/532598/100/0/threaded - () http://www.securityfocus.com/archive/1/532598/100/0/threaded -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/90941 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/90941 -
References () https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20140630-0_IBM_Algorithmics_RICOS_multiple_vulnerabilities_v10.txt - () https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20140630-0_IBM_Algorithmics_RICOS_multiple_vulnerabilities_v10.txt -

Information

Published : 2014-07-07 11:01

Updated : 2024-11-21 02:02


NVD link : CVE-2014-0867

Mitre link : CVE-2014-0867

CVE.ORG link : CVE-2014-0867


JSON object : View

Products Affected

ibm

  • algorithmics
  • algo_credit_limits