IBM WebSphere Application Server is shipped as a component of IBM WebSphere Application Server Patterns. There is a vulnerability in the Apache log4j library used by IBM WebSphere Application Server traditional in the Admin Console and UDDI Registry application. This has been addressed in IBM WebSphere Application Server by removing log4j from the Admin Console and UDDI Registry application.
Refer to the security bulletin(s) listed in the Remediation/Fixes section
Principal Product and Version(s)
|
Affected Supporting Product and Version
—|—
IBM WebSphere Application Server Patterns, 2.3.3.3.| IBM WebSphere Application Server:
Please consult the following security bulletin for vulnerability details and information about fixes.
None
CPE | Name | Operator | Version |
---|---|---|---|
websphere application server patterns | eq | any |