Show filters
432 Total Results
Displaying 381-390 of 432
Sort by:
Attacker Value
Unknown
CVE-2007-3264
Disclosure Date: June 19, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the PD tools component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2006-7198
Disclosure Date: April 30, 2007 (last updated October 04, 2023)
Unspecified vulnerability in IBM WebSphere Application Server (WAS) before 5.1.1.14, and WAS for z/OS 601 before 6.0.2.13, has unknown impact and attack vectors, related to a "Potential security exposure," aka PK26123.
0
Attacker Value
Unknown
CVE-2007-1945
Disclosure Date: April 11, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the Servlet Engine/Web Container in IBM WebSphere Application Server (WAS) before 6.1.0.7 has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2007-1944
Disclosure Date: April 11, 2007 (last updated October 04, 2023)
The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 6.1.0.7 allows attackers to cause a denial of service via unknown vectors involving the "double release [of] a bytebuffer input stream," possibly a double free vulnerability.
0
Attacker Value
Unknown
CVE-2007-1608
Disclosure Date: March 22, 2007 (last updated October 04, 2023)
CRLF injection vulnerability in IBM WebSphere Application Server (WAS) before 6.0.2.19 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a single CRLF sequence in a context that is not a valid multi-line header.
0
Attacker Value
Unknown
CVE-2006-7164
Disclosure Date: March 20, 2007 (last updated October 04, 2023)
SimpleFileServlet in IBM WebSphere Application Server 5.0.1 through 5.0.2.7 on Linux and UNIX does not block certain invalid URIs and does not issue a security challenge, which allows remote attackers to read secure files and obtain sensitive information via certain requests.
0
Attacker Value
Unknown
CVE-2006-7166
Disclosure Date: March 20, 2007 (last updated October 04, 2023)
IBM WebSphere Application Server (WAS) 5.1.1.9 and earlier allows remote attackers to obtain JSP source code and other sensitive information via "a specific JSP URL."
0
Attacker Value
Unknown
CVE-2006-7165
Disclosure Date: March 20, 2007 (last updated October 04, 2023)
IBM WebSphere Application Server (WAS) 5.0 through 5.1.1.0 allows remote attackers to obtain JSP source code and other sensitive information via certain "special URIs."
0
Attacker Value
Unknown
CVE-2006-6636
Disclosure Date: December 19, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the Utility Classes for IBM WebSphere Application Server (WAS) before 5.1.1.13 and 6.x before 6.0.2.17 has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2006-6637
Disclosure Date: December 19, 2006 (last updated October 04, 2023)
The Servlet Engine and Web Container in IBM WebSphere Application Server (WAS) before 6.0.2.17, when ibm-web-ext.xmi sets fileServingEnabled to true and servlet caching is enabled, allows remote attackers to obtain JSP source code and other sensitive information via "specific requests."
0