CVE-2015-1970
 
Severity Score
2.1
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The IBM WebSphere DataPower XC10 appliance 2.1 through 2.1.0.3 and 2.5 through 2.5.0.4 retains data on SSD cards, which might allow physically proximate attackers to obtain sensitive information by extracting a card and attaching it elsewhere.
El dispositivo IBM WebSpher DataPower XC10 2.1 hasta la versión 2.1.0.3 y 2.5 hasta la versión 2.5.0.4, retiene los datos en tarjetas SSD, lo que podría permitir a atacantes físicamente próximos obtener información sensible mediante la extracción de una tarjeta y su conexión en otro lugar.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2015-02-19 CVE Reserved
- 2015-08-03 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21962861 | 2015-08-04 |
URL | Date | SRC |
---|---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg1IT09803 | 2015-08-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.1.0.0 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.1.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.1.0.1 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.1.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.1.0.2 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.1.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.1.0.3 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.1.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.5.0.0 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.5.0.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.5.0.1 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.5.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.5.0.2 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.5.0.2" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.5.0.3 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.5.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Websphere Datapower Xc10 Appliance Firmware Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" | 2.5.0.4 Search vendor "Ibm" for product "Websphere Datapower Xc10 Appliance Firmware" and version "2.5.0.4" | - |
Affected
|