CyberRota Analysis
AI analysis pending.
CVE
CVE-2014-3021
Severity
MEDIUM
CVSS
5
EPSS
2.23%
Original NVD Description
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.35, 8.0 before 8.0.0.10, and 8.5 before 8.5.5.4 does not properly handle HTTP headers, which allows remote attackers to obtain sensitive cookie and authentication data via an unspecified HTTP method.