CVE-2017-1484: IBM WebSphere Commerce

Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.

IBM WebSphere Commerce Enterprise, Professional, Express, and Developer 7.0 and 8.0 could allow an authenticated attacker to obtain information such as user personal data. IBM X-Force ID: 128622.

Affected products

  • IBM WebSphere Commerce: version 8.0.0.0 only; version 8.0.0.1 only; version 8.0.0.2 only; version 8.0.0.3 only; version 8.0.0.4 only; version 8.0.0.5 only; …

Published 2017-11-27. Last modified 2026-06-17.