Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 5.1.0.3 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2006-7165
IBM WebSphere Application Server (WAS) 5.0 up to and including 5.1.1.0 allows remote malicious users to obtain JSP source code and other sensitive information via certain "special URIs."
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0.3
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
5
CVSSv2
CVE-2001-0389
IBM Websphere/NetCommerce3 3.1.2 allows remote malicious users to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.
Ibm Websphere Application Server 5.1.0.3
Ibm Net.commerce 3.1.2
5
CVSSv2
CVE-2005-4834
IBM WebSphere Application Server (WAS) 5.0.2.5 up to and including 5.1.1.3 allows remote malicious users to obtain JSP source code and other sensitive information, related to incorrect request processing by the web container.
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0.3
4.3
CVSSv2
CVE-2006-2431
Cross-site scripting (XSS) vulnerability in the 500 Internal Server Error page on the SOAP port (8880/tcp) in IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.x prior to 5.1.1.12, and 6.0.2 up to 6.0.2.7, allows remote malicious users to inject arbitrary web scri...
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 5.1.0.3
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 5.1.1.1
1 EDB exploit
5
CVSSv2
CVE-2006-7166
IBM WebSphere Application Server (WAS) 5.1.1.9 and previous versions allows remote malicious users to obtain JSP source code and other sensitive information via "a specific JSP URL."
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.4
10
CVSSv2
CVE-2008-4283
CRLF injection vulnerability in the WebContainer component in IBM WebSphere Application Server (WAS) 5.1.1.19 and previous versions 5.1.x versions allows remote malicious users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.8
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 5.1.1.18
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.12
2.6
CVSSv2
CVE-2009-0433
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1.x prior to 5.1.1.19, 6.0.x prior to 6.0.2.29, and 6.1.x prior to 6.1.0.19, when Web Server plug-in content buffering is enabled, allows malicious users to cause a denial of service (daemon crash) via unknown ...
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.3
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.19
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 6.0.1.13
Ibm Websphere Application Server 6.0.1.11
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.1.9
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 6.1.0.15
Ibm Websphere Application Server 6.1
Ibm Websphere Application Server 6.1.0.16
Ibm Websphere Application Server 6.1.0.2
Ibm Websphere Application Server 6.1.0.3
5.8
CVSSv2
CVE-2008-4284
Open redirect vulnerability in the ibm_security_logout servlet in IBM WebSphere Application Server (WAS) 5.1.1.19 and previous versions 5.x versions, 6.0.x prior to 6.0.2.33, and 6.1.x prior to 6.1.0.23 allows remote malicious users to redirect users to arbitrary web sites and co...
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.3
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0
2.1
CVSSv2
CVE-2011-1307
The installer in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standard filesystem operations, a different vulnerability than CVE-2009-1173.
Ibm Websphere Application Server
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.0.2.31
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0.1.5
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 3.52
Ibm Websphere Application Server 3.5.3
7.5
CVSSv2
CVE-2011-1309
The Plug-in component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 does not properly handle trace requests, which has unspecified impact and attack vectors.
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 7.0
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.19
Ibm Websphere Application Server 6.0.1
Ibm Websphere Application Server 6.0.0.2
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 6.0.1.17
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 6.0.1.1
Ibm Websphere Application Server 4.0.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
CVE-2006-4304
wireless
CVE-2023-23022
local file inclusion
CVE-2024-27058
CVE-2024-33820
open redirect
CVE-2024-27079
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »