CVE-2016-2870: IBM WebSphere Datapower XC10 Appliance Firmware

Low severity, CVSS 2.7. EPSS: 1.7% chance of exploitation in the next 30 days.

Buffer overflow in the CLI on IBM WebSphere DataPower XC10 appliances 2.1 and 2.5 allows remote authenticated users to cause a denial of service via unspecified vectors.

Affected products

  • IBM WebSphere Datapower XC10 Appliance Firmware: version 2.1 only; version 2.5 only

Published 2016-07-02. Last modified 2026-06-17.