CVE-2016-0225: IBM WebSphere Commerce

Medium severity, CVSS 4.9. EPSS: 1.1% chance of exploitation in the next 30 days.

IBM WebSphere Commerce 6.x through 6.0.0.11 and 7.x through 7.0.0.9 allows remote authenticated Commerce Accelerator administrators to obtain sensitive information via unspecified vectors.

Affected products

  • IBM WebSphere Commerce: version 6.0.0.0 only; version 6.0.0.1 only; version 6.0.0.2 only; version 6.0.0.3 only; version 6.0.0.4 only; version 6.0.0.5 only; …

Published 2016-02-29. Last modified 2026-06-17.