CVE-2015-7444: IBM WebSphere Commerce

Medium severity, CVSS 5.3. EPSS: 0.9% chance of exploitation in the next 30 days.

The Update Installer in IBM WebSphere Commerce Enterprise 7.0.0.8 and 7.0.0.9 does not properly replicate the search index, which allows attackers to obtain sensitive information via unspecified vectors.

Affected products

  • IBM WebSphere Commerce: version 7.0.0.8 only; version 7.0.0.9 only

Published 2016-02-15. Last modified 2026-06-17.