Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 5.0 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-0425
Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via a crafted URL that causes the page to be processed by the file serving servlet instead of ...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.1.0
5
CVSSv2
CVE-2005-1112
IBM WebSphere Application Server 6.0 and previous versions, when sharing the document root of the web server, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via an HTTP request with an invalid Host header, which causes the page to be processe...
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
1 EDB exploit
4.3
CVSSv2
CVE-2005-2091
IBM WebSphere 5.1 and WebSphere 5.0 allows remote malicious users to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes W...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.0
5
CVSSv2
CVE-2006-7166
IBM WebSphere Application Server (WAS) 5.1.1.9 and previous versions allows remote malicious users to obtain JSP source code and other sensitive information via "a specific JSP URL."
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.4
10
CVSSv2
CVE-2008-4283
CRLF injection vulnerability in the WebContainer component in IBM WebSphere Application Server (WAS) 5.1.1.19 and previous versions 5.1.x versions allows remote malicious users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
Ibm Websphere Application Server 5.1.1.12
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.1.1.8
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 5.1.1.18
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.12
4.3
CVSSv2
CVE-2006-3231
Unspecified vulnerability in IBM WebSphere Application Server (WAS) prior to 6.0.2.11, when fileServingEnabled is true, allows remote malicious users to obtain JSP source code and other sensitive information via "URIs with special characters."
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 3.5.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 3.0.2.2
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
10
CVSSv2
CVE-2006-3232
Unspecified vulnerability in IBM WebSphere Application Server prior to 6.0.2.11 has unknown impact and attack vectors because the "UserNameToken cache was improperly used."
Ibm Websphere Application Server 2.0
Ibm Websphere Application Server 3.0
Ibm Websphere Application Server 3.0.2
Ibm Websphere Application Server 3.5.2
Ibm Websphere Application Server 3.5.3
Ibm Websphere Application Server 4.0.3
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 3.0.2.3
Ibm Websphere Application Server 3.0.2.4
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.0.2.8
6
CVSSv2
CVE-2011-1311
The Security component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15, when a J2EE 1.4 application is used, determines the security role mapping on the basis of the ibm-application-bnd.xml file instead of the intended ibm-application-bnd.xmi file, which might allow r...
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 6.0.0.1
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.1.15
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.27
5
CVSSv2
CVE-2011-1318
Memory leak in org.apache.jasper.runtime.JspWriterImpl.response in the JavaServer Pages (JSP) component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to cause a denial of service (memory consumption) by accessing a JSP page of an applic...
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.4
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 6.0.2.32
Ibm Websphere Application Server 6.0.2.29
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.16
Ibm Websphere Application Server 6.0.2.19
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.1.1.4
Ibm Websphere Application Server 5.1.1.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.1.17
Ibm Websphere Application Server 6.0.1.1
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.27
6.8
CVSSv2
CVE-2010-3271
Multiple cross-site request forgery (CSRF) vulnerabilities in the Integrated Solutions Console (aka administrative console) in IBM WebSphere Application Server (WAS) 7.0.0.13 and previous versions allow remote malicious users to hijack the authentication of administrators for req...
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 6.0.2.30
Ibm Websphere Application Server 6.1.0.19
Ibm Websphere Application Server 6.1.0.1
Ibm Websphere Application Server 6.1.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.1.0.17
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 6.0.2.13
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.17
Ibm Websphere Application Server 6.0.2.15
Ibm Websphere Application Server
Ibm Websphere Application Server 7.0.0.6
Ibm Websphere Application Server 7.0.0.8
Ibm Websphere Application Server 6.1.0.33
Ibm Websphere Application Server 6.0.2.32
Ibm Websphere Application Server 6.1.0.3
Ibm Websphere Application Server 6.1.0.5
Ibm Websphere Application Server 6.1.0.0
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4946
CVE-2024-30309
CVE-2024-4761
CVE-2024-30051
type confusion
memory leak
CVE-2024-30293
reflected XSS
CVE-2024-3126
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »