CVE Database · CVE-2014-6136
CVSS v3.1
N/A
EPSS
1.17%
Published
Feb 1, 2015
Modified
May 6, 2026
Public PoC / Exploit
All weaponized →No public PoC or exploit code indexed for this CVE.
Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
IBM Security AppScan Standard 8.x and 9.x before 9.0.1.1 FP1 supports unencrypted sessions, which allows remote attackers to obtain sensitive information by sniffing the network.
Weaknesses (CWE)
Affected Products (15)
References (4)