PT-2009-1234 · Ibm · Ibm Websphere Application Server

Published

2009-02-17

·

Updated

2017-08-08

·

CVE-2008-4285

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server versions 6.1.x before 6.1.0.19
Description The issue is related to an unspecified vulnerability in the Performance Monitoring Infrastructure (PMI) feature within the Servlet Engine/Web Container component. When a component statistic is enabled, it allows attackers to cause a denial of service, resulting in a daemon crash. This is achieved through vectors related to a gradual degradation in performance.
Recommendations For IBM WebSphere Application Server versions 6.1.x before 6.1.0.19, update to version 6.1.0.19 or later to resolve the issue.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-4285

Affected Products

Ibm Websphere Application Server