Описание
The Web Services Security component in the Web Services Feature Pack before 6.1.0.41 for IBM WebSphere Application Server (WAS) 6.1 does not properly handle the enabling of WS-Security for a JAX-WS application, which has unspecified impact and attack vectors.
The Web Services Security component in the Web Services Feature Pack before 6.1.0.41 for IBM WebSphere Application Server (WAS) 6.1 does not properly handle the enabling of WS-Security for a JAX-WS application, which has unspecified impact and attack vectors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2011-1377
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72299
- http://secunia.com/advisories/46469
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM43792
- http://www-01.ibm.com/support/docview.wss?uid=swg1PM50205
- http://www-01.ibm.com/support/docview.wss?uid=swg27011716
- http://www.securityfocus.com/bid/50310
EPSS
CVE ID
Связанные уязвимости
The Web Services Security component in the Web Services Feature Pack before 6.1.0.41 for IBM WebSphere Application Server (WAS) 6.1 does not properly handle the enabling of WS-Security for a JAX-WS application, which has unspecified impact and attack vectors.
EPSS