CVE-2015-1887: IBM WebSphere Portal
Medium severity, CVSS 5.0. EPSS: 2.5% chance of exploitation in the next 30 days.
IBM WebSphere Portal 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF17, and 8.5.0 before CF06 allows remote attackers to obtain sensitive Java Content Repository (JCR) information via a crafted request.
Affected products
- IBM WebSphere Portal: version 7.0.0.0 only; version 7.0.0.1 only; version 7.0.0.2 only; version 8.0.0.0 only; version 8.0.0.1 only; version 8.5.0.0 only
Published 2015-07-14. Last modified 2026-06-17.