CVE-2014-0963: IBM Security Access Manager For Web Appliance

High severity, CVSS 7.1. EPSS: 3.1% chance of exploitation in the next 30 days.

The Reverse Proxy feature in IBM Global Security Kit (aka GSKit) in IBM Security Access Manager (ISAM) for Web 7.0 before 7.0.0-ISS-SAM-IF0006 and 8.0 before 8.0.0.3-ISS-WGA-IF0002 allows remote attackers to cause a denial of service (infinite loop) via crafted SSL messages.

Affected products

  • IBM Security Access Manager For Web Appliance: version 7.0 only; version 8.0 only
  • IBM Security Access Manager For Web Software: version 7.0 only; version 8.0 only

Published 2014-05-08. Last modified 2026-06-17.