PT-2009-4359 · Ibm · Ibm Websphere Application Server

Published

2009-06-03

·

Updated

2017-08-17

·

CVE-2009-1899

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: IBM WebSphere Application Server versions 6.0.2 through 6.0.2.34 IBM WebSphere Application Server versions 6.1 through 6.1.0.24 IBM WebSphere Application Server versions 7.0 through 7.0.0.4
Description: The issue allows remote authenticated users to obtain sensitive information via unknown use of the wsadmin scripting tool, related to a security exposure in wsadmin.
Recommendations: For IBM WebSphere Application Server versions 6.0.2 through 6.0.2.34, update to version 6.0.2.35 or later. For IBM WebSphere Application Server versions 6.1 through 6.1.0.24, update to version 6.1.0.25 or later. For IBM WebSphere Application Server versions 7.0 through 7.0.0.4, update to version 7.0.0.5 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-1899

Affected Products

Ibm Websphere Application Server