CVE-2013-5446: IBM WebSphere Datapower XC10 Appliance

High severity, CVSS 10.0. EPSS: 1.7% chance of exploitation in the next 30 days.

The console on IBM WebSphere DataPower XC10 appliances 2.1.0 and 2.5.0 does not properly process logoff actions, which has unspecified impact and remote attack vectors.

Affected products

  • IBM WebSphere Datapower XC10 Appliance
  • IBM WebSphere Datapower XC10 Appliance Firmware: version 2.1.0.0 only; version 2.5.0.0 only

Published 2013-10-22. Last modified 2026-06-16.