CVE-2015-1970

Severity
2.1LOW
EPSS
0.1%
top 82.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 3
Latest updateMay 17

Description

The IBM WebSphere DataPower XC10 appliance 2.1 through 2.1.0.3 and 2.5 through 2.5.0.4 retains data on SSD cards, which might allow physically proximate attackers to obtain sensitive information by extracting a card and attaching it elsewhere.

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-4w9q-747g-jf2q: The IBM WebSphere DataPower XC10 appliance 22022-05-17
CVEList
CVE-2015-1970: The IBM WebSphere DataPower XC10 appliance 22015-08-03