IBM InfoSphere Optim Workload Replay 2.x before 2.1.0.3 relies on client-side code to verify authorization, which allows remote attackers to bypass intended access restrictions by modifying the client behavior.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1895
Reference (s):
- BID:74442
- URL: http://www.securityfocus.com/bid/74442
- http://www-01.ibm.com/support/docview.wss?uid=swg21700768