PT-2011-3038 · Ibm · Ibm Websphere Application Server

Publicado

2011-03-08

·

Atualizado

2011-04-21

·

CVE-2011-1307

CVSS v2.0

2.1

Baixa

VetorAV:L/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server versions prior to 7.0.0.15
Description The issue concerns the installer in IBM WebSphere Application Server, which sets 777 permissions for a temporary log directory. This setting allows local users to access log files unintentionally through standard filesystem operations.
Recommendations For versions prior to 7.0.0.15, update to version 7.0.0.15 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-1307

Produtos afetados

Ibm Websphere Application Server