PT-2012-2812 · Ibm · Ibm Websphere Application Server

Published

2012-06-20

·

Updated

2012-06-21

·

CVE-2012-0717

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server version 7.0 before 7.0.0.23
Description The issue allows remote attackers to bypass X.509 client-certificate authentication when a certain SSLv2 configuration with client authentication is used.
Recommendations For IBM WebSphere Application Server version 7.0 before 7.0.0.23, update to version 7.0.0.23 or later to resolve the issue.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-0717

Affected Products

Ibm Websphere Application Server