Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 3.0.2 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2001-0824
Cross-site scripting vulnerability in IBM WebSphere 3.02 and 3.5 FP2 allows remote malicious users to execute Javascript by inserting the Javascript into (1) a request for a .JSP file, or (2) a request to the webapp/examples/ directory, which inserts the Javascript into an error ...
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.5
NA
CVE-2001-1189
IBM Websphere Application Server 3.5.3 and previous versions stores a password in cleartext in the sas.server.props file, which allows local users to obtain the passwords via a JSP script.
Ibm Websphere Application Server 3.0.2.2
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 3.5
Ibm Websphere Application Server 3.5.1
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 3.5.3
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.5.2
NA
CVE-2000-0848
Buffer overflow in IBM WebSphere web application server (WAS) allows remote malicious users to execute arbitrary commands via a long Host: request header.
Ibm Websphere Application Server 3.0.2
1 EDB exploit
7.5
CVSSv3
CVE-2000-0497
IBM WebSphere server 3.0.2 allows a remote malicious user to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
Ibm Websphere Application Server 3.0.2
NA
CVE-2006-3232
Unspecified vulnerability in IBM WebSphere Application Server prior to 6.0.2.11 has unknown impact and attack vectors because the "UserNameToken cache was improperly used."
Ibm Websphere Application Server 2.0
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.5.2
Ibm Websphere Application Server 3.5.3
Ibm Websphere Application Server 4.0.3
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.8
NA
CVE-2006-3231
Unspecified vulnerability in IBM WebSphere Application Server (WAS) prior to 6.0.2.11, when fileServingEnabled is true, allows remote malicious users to obtain JSP source code and other sensitive information via "URIs with special characters."
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 3.5.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 3.0.2.2
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
NA
CVE-2011-1307
The installer in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standard filesystem operations, a different vulnerability than CVE-2009-1173.
Ibm Websphere Application Server
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.0.2.31
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0.1.5
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 3.52
Ibm Websphere Application Server 3.5.3
NA
CVE-2011-1308
Cross-site scripting (XSS) vulnerability in the Installation Verification Test (IVT) application in the Install component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.6
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.0.2.31
Ibm Websphere Application Server 6.0.2.30
NA
CVE-2011-1309
The Plug-in component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 does not properly handle trace requests, which has unspecified impact and attack vectors.
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 7.0
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.19
Ibm Websphere Application Server 6.0.1
Ibm Websphere Application Server 6.0.0.2
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 6.0.1.17
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 6.0.1.1
Ibm Websphere Application Server 4.0.2
NA
CVE-2011-1314
The Service Integration Bus (SIB) messaging engine in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to cause a denial of service (daemon hang) by performing close operations via network connections to a queue manager.
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 7.0
Ibm Websphere Application Server 7.0.0.6
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 6.0.1.2
Ibm Websphere Application Server 6.0.0.2
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 6.0.1.9
Ibm Websphere Application Server 4.0.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »