CVE-2014-0943: IBM WebSphere Commerce

High severity, CVSS 7.1. EPSS: 2.3% chance of exploitation in the next 30 days.

IBM WebSphere Commerce 6.0 Feature Pack 2 through Feature Pack 5, 7.0.0.0 through 7.0.0.8, and 7.0 Feature Pack 1 through Feature Pack 7 allows remote attackers to cause a denial of service (resource consumption and daemon crash) via a malformed id parameter in a request.

Affected products

  • IBM WebSphere Commerce: version 6.0.0.0 only; version 7.0 only; version 7.0.0.1 only; version 7.0.0.2 only; version 7.0.0.3 only; version 7.0.0.4 only; …

Published 2014-05-25. Last modified 2026-06-17.