Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3vq5-h8qx-c7qm

Опубликовано: 04 нояб. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

"IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations. IBM X-Force ID: 234762."

"IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations. IBM X-Force ID: 234762."

EPSS

Процентиль: 20%
0.00064
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-290

Связанные уязвимости

CVSS3: 5.9
nvd
больше 3 лет назад

"IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations. IBM X-Force ID: 234762."

EPSS

Процентиль: 20%
0.00064
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-290