Security Advisory
CVE-2014-3021
5
Vulnerability Description
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.35, 8.0 before 8.0.0.10, and 8.5 before 8.5.5.4 does not properly handle HTTP headers, which allows remote attackers to obtain sensitive cookie and authentication data via an unspecified HTTP method.
Published Date
October 19, 2014
Official Source
NIST NVD Advisory