CVE Database
/

CVE-2015-1904

Back to search

CVE-2015-1904

Published: Aug 1, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

IBM Business Process Manager (BPM) 8.0.x through 8.0.1.3, 8.5.0 through 8.5.0.1, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.0, when external Enterprise Content Management (ECM) integration is enabled with a certain technical system account configuration, allows remote authenticated users to bypass intended document-access restrictions via a (1) upload or (2) download action.

VendorProductVersions

n/a

n/a

affected
n/a

References

JR53209
vendor-advisory
x_refsource_AIXAPAR
1033159
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now