CVE-2013-5428: IBM WebSphere Datapower XC10 Appliance

High severity, CVSS 7.1. EPSS: 1.7% chance of exploitation in the next 30 days.

IBM WebSphere DataPower XC10 appliances 2.5.0 do not require authentication for all administrative actions, which allows remote attackers to cause a denial of service via unspecified vectors.

Affected products

  • IBM WebSphere Datapower XC10 Appliance
  • IBM WebSphere Datapower XC10 Appliance Firmware: version 2.5.0.0 only

Published 2013-10-22. Last modified 2026-06-16.