Unrated severityNVD Advisory· Published Feb 13, 2015· Updated May 6, 2026
CVE-2014-6154
CVE-2014-6154
Description
Directory traversal vulnerability in IBM Optim Performance Manager for DB2 4.1.0.1 through 4.1.1 on Linux, UNIX, and Windows and IBM InfoSphere Optim Performance Manager for DB2 5.1 through 5.3.1 on Linux, UNIX, and Windows allows remote attackers to access arbitrary files via a .. (dot dot) in a URL.
Affected products
3cpe:2.3:a:ibm:optim_performance_manager:4.1.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:optim_performance_manager:4.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:optim_performance_manager:4.1.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:optim_performance_manager:5.1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www-01.ibm.com/support/docview.wssnvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/97677nvd
News mentions
0No linked articles in our index yet.