Insecure HTTPS Connection in IBM WebSphere Process Server and Business Process Manager

Insecure HTTPS Connection in IBM WebSphere Process Server and Business Process Manager

CVE-2015-7441 · MEDIUM Severity

AV:N/AC:M/AU:S/C:P/I:P/A:N

Remote Artifact Loader (RAL) in IBM WebSphere Process Server 7 and Business Process Manager Advanced 7.5 through 7.5.1.2, 8.0 through 8.0.1.3, 8.5.0 through 8.5.0.2, 8.5.5 through 8.5.5.0, and 8.5.6 through 8.5.6.2 does not properly use SSL for its HTTPS connection, which allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.

Learn more about our Cis Benchmark Audit For Ibm I.