Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xx38-qpxm-6j8x

Опубликовано: 05 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not properly validate user accounts, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not properly validate user accounts, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

EPSS

Процентиль: 56%
0.00345
Низкий

Дефекты

CWE-863

Связанные уязвимости

nvd
больше 12 лет назад

IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not properly validate user accounts, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

EPSS

Процентиль: 56%
0.00345
Низкий

Дефекты

CWE-863