CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
SINGLE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:S/C:N/I:N/A:P
AI Score
Confidence
High
EPSS
Percentile
71.5%
IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.9 allows remote authenticated users to cause a denial of service (ORB ListenerThread hang) by aborting an SSL handshake.
Vendor | Product | Version | CPE |
---|---|---|---|
ibm | websphere_application_server | * | cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0 | cpe:2.3:a:ibm:websphere_application_server:6.0:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.0.2 | cpe:2.3:a:ibm:websphere_application_server:6.0.0.2:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.0.3 | cpe:2.3:a:ibm:websphere_application_server:6.0.0.3:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.1 | cpe:2.3:a:ibm:websphere_application_server:6.0.1:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.1.2 | cpe:2.3:a:ibm:websphere_application_server:6.0.1.2:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.2 | cpe:2.3:a:ibm:websphere_application_server:6.0.2:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.2.1 | cpe:2.3:a:ibm:websphere_application_server:6.0.2.1:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.2.3 | cpe:2.3:a:ibm:websphere_application_server:6.0.2.3:*:*:*:*:*:*:* |
ibm | websphere_application_server | 6.0.2.5 | cpe:2.3:a:ibm:websphere_application_server:6.0.2.5:*:*:*:*:*:*:* |