Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 4.0.3 vulnerabilities and exploits
(subscribe to this query)
445
VMScore
CVE-2006-1619
IBM WebSphere Application Server 4.0.1 up to and including 4.0.3 allows remote malicious users to cause a denial of service (application crash) via an HTTP request with a large header.
Ibm Websphere Application Server 4.0.1
Ibm Websphere Application Server 4.0.2
Ibm Websphere Application Server 4.0.3
445
VMScore
CVE-2002-1153
IBM Websphere 4.0.3 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with long HTTP headers, such as "Host".
Ibm Websphere Application Server 4.0.3
890
VMScore
CVE-2006-3232
Unspecified vulnerability in IBM WebSphere Application Server prior to 6.0.2.11 has unknown impact and attack vectors because the "UserNameToken cache was improperly used."
Ibm Websphere Application Server 2.0
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.5.2
Ibm Websphere Application Server 3.5.3
Ibm Websphere Application Server 4.0.3
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.8
383
VMScore
CVE-2006-3231
Unspecified vulnerability in IBM WebSphere Application Server (WAS) prior to 6.0.2.11, when fileServingEnabled is true, allows remote malicious users to obtain JSP source code and other sensitive information via "URIs with special characters."
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 3.5.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 3.0.2.2
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
685
VMScore
CVE-2010-3271
Multiple cross-site request forgery (CSRF) vulnerabilities in the Integrated Solutions Console (aka administrative console) in IBM WebSphere Application Server (WAS) 7.0.0.13 and previous versions allow remote malicious users to hijack the authentication of administrators for req...
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.1.0.19
Ibm Websphere Application Server 6.1.0.1
Ibm Websphere Application Server 6.1.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.1.0.17
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 6.0.2.13
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server
Ibm Websphere Application Server 7.0.0.6
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 6.1.0.33
Ibm Websphere Application Server 6.0.2.32
Ibm Websphere Application Server 6.1.0.3
Ibm Websphere Application Server 6.1.0.5
Ibm Websphere Application Server 6.1.0.0
1 EDB exploit
383
VMScore
CVE-2011-1308
Cross-site scripting (XSS) vulnerability in the Installation Verification Test (IVT) application in the Install component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.6
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.0.2.31
Ibm Websphere Application Server 6.0.2.30
445
VMScore
CVE-2011-1316
The Session Initiation Protocol (SIP) Proxy in the HTTP Transport component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to cause a denial of service (worker thread exhaustion and UDP messaging outage) by sending many UDP messages.
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 7.0.0.9
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 6.0.0.1
Ibm Websphere Application Server 5.1.1.8
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 6.0.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.1.15
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 6.0.1.17
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 6.0.1.13
534
VMScore
CVE-2011-1311
The Security component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15, when a J2EE 1.4 application is used, determines the security role mapping on the basis of the ibm-application-bnd.xml file instead of the intended ibm-application-bnd.xmi file, which might allow r...
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 6.0.0.1
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.1.15
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.27
445
VMScore
CVE-2011-1318
Memory leak in org.apache.jasper.runtime.JspWriterImpl.response in the JavaServer Pages (JSP) component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to cause a denial of service (memory consumption) by accessing a JSP page of an applic...
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 6.0.2.32
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 6.0.2.19
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 6.0.1.1
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.27
187
VMScore
CVE-2011-1307
The installer in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standard filesystem operations, a different vulnerability than CVE-2009-1173.
Ibm Websphere Application Server
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.0.2.31
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0.1.5
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 3.52
Ibm Websphere Application Server 3.5.3
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7028
memory leak
log injection
CVE-2024-3400
CVE-2022-48695
CVE-2022-48675
CVE-2024-34487
CVE-2024-33792
spoof
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »