PT-2024-13901 · Ibm · Ibm Websphere Application Server

Published

2024-08-14

·

Updated

2024-09-11

·

CVE-2023-50315

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server versions 8.5 through 9.0
Description The issue allows an attacker with access to the network to conduct spoofing attacks. An attacker could exploit this using a certificate issued by a trusted authority to obtain sensitive information.
Recommendations For IBM WebSphere Application Server versions 8.5 through 9.0, update to a version that includes the fix for this issue to prevent spoofing attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

CVE-2023-50315

Affected Products

Ibm Websphere Application Server