Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrfh-q76x-p6f2

Опубликовано: 01 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.

EPSS

Процентиль: 41%
0.00515
Низкий

8.5 High

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 8.5
nvd
2 месяца назад

IBM WebSphere Application Server 9.0, and 8.5 is affected by an improper validation of user-supplied data during deserialization using the SAML Web Single Sign-On component. This could result in remote code execution via a crafted HTTP request when combined with a suitable gadget chain.

EPSS

Процентиль: 41%
0.00515
Низкий

8.5 High

CVSS3

Дефекты

CWE-502