Lucene search

K
cveMitreCVE-2009-0906
HistoryAug 13, 2009 - 6:30 p.m.

CVE-2009-0906

2009-08-1318:30:00
CWE-287
mitre
web.nvd.nist.gov
28
ibm
websphere
application server
sca
security
vulnerability
authentication
access restrictions
cve-2009-0906

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.3

Confidence

Low

EPSS

0.003

Percentile

65.2%

The Service Component Architecture (SCA) feature pack for IBM WebSphere Application Server (WAS) SCA 1.0 before 1.0.0.3 allows remote authenticated users to bypass intended authentication.transport access restrictions and obtain unspecified access via unknown vectors.

Affected configurations

Nvd
Node
ibmwebsphere_application_serverMatch1.0
OR
ibmwebsphere_application_serverMatch1.0.0.2
VendorProductVersionCPE
ibmwebsphere_application_server1.0cpe:2.3:a:ibm:websphere_application_server:1.0:*:*:*:*:*:*:*
ibmwebsphere_application_server1.0.0.2cpe:2.3:a:ibm:websphere_application_server:1.0.0.2:*:*:*:*:*:*:*

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.3

Confidence

Low

EPSS

0.003

Percentile

65.2%

Related for CVE-2009-0906