Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 8.5 vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2020-4589
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote malicious user to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 184585.
Ibm Websphere Application Server
10
CVSSv2
CVE-2020-4448
IBM WebSphere Application Server Network Deployment 7.0, 8.0, 8.5, and 9.0 could allow a remote malicious user to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 181228.
Ibm Websphere Application Server
Ibm Websphere Virtual Enterprise 7.0
Ibm Websphere Virtual Enterprise 8.0
10
CVSSv2
CVE-2020-4450
IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote malicious user to execute arbitrary code on the system with a specially-crafted sequence of serialized objects. IBM X-Force ID: 181231.
Ibm Websphere Application Server
2 Github repositories
10
CVSSv2
CVE-2019-4279
IBM WebSphere Application Server 8.5 and 9.0 could allow a remote malicious user to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM X-Force ID: 160445.
Ibm Websphere Application Server 7.0.0.0
Ibm Websphere Application Server
1 Github repository
10
CVSSv2
CVE-2015-1920
IBM WebSphere Application Server (WAS) 6.1 up to and including 6.1.0.47, 7.0 prior to 7.0.0.39, 8.0 prior to 8.0.0.11, and 8.5 prior to 8.5.5.6 allows remote malicious users to execute arbitrary code by sending crafted instructions in a management-port session.
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 8.5.0.1
Ibm Websphere Application Server 8.0.0.4
Ibm Websphere Application Server 8.0.0.5
Ibm Websphere Application Server 8.0.0.6
Ibm Websphere Application Server 8.0.0.7
Ibm Websphere Application Server 7.0.0.19
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 7.0.0.21
Ibm Websphere Application Server 7.0.0.22
Ibm Websphere Application Server 6.1
Ibm Websphere Application Server 6.1.0
Ibm Websphere Application Server 6.1.0.0
Ibm Websphere Application Server 6.1.0.1
Ibm Websphere Application Server 6.1.0.29
Ibm Websphere Application Server 6.1.0.3
Ibm Websphere Application Server 6.1.0.31
Ibm Websphere Application Server 6.1.0.33
Ibm Websphere Application Server 6.1.0.35
Ibm Websphere Application Server 8.5.5.3
Ibm Websphere Application Server 8.5.5.4
Ibm Websphere Application Server 8.5.5.5
10
CVSSv2
CVE-2013-0462
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 prior to 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors.
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 7.0.0.23
Ibm Websphere Application Server 7.0.0.7
Ibm Websphere Application Server 7.0.0.9
Ibm Websphere Application Server 7.0
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 7.0.0.13
Ibm Websphere Application Server 7.0.0.17
Ibm Websphere Application Server 7.0.0.19
Ibm Websphere Application Server 7.0.0.15
Ibm Websphere Application Server 7.0.0.3
Ibm Websphere Application Server 7.0.0.11
Ibm Websphere Application Server 7.0.0.21
Ibm Websphere Application Server 7.0.0.25
Ibm Websphere Application Server 8.0.0.0
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 6.1.0.0
9.3
CVSSv2
CVE-2015-1885
WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 prior to 7.0.0.39, 8.0 prior to 8.0.0.11, 8.5 Liberty Profile prior to 8.5.5.5, and 8.5 Full Profile prior to 8.5.5.6, when the OAuth grant type requires sending a password, allows remote malicious users to gain...
Ibm Websphere Application Server 8.5.0.1
Ibm Websphere Application Server 8.5.0.2
Ibm Websphere Application Server 7.0.0.37
Ibm Websphere Application Server 7.0.0.36
Ibm Websphere Application Server 7.0.0.29
Ibm Websphere Application Server 7.0.0.27
Ibm Websphere Application Server 7.0.0.18
Ibm Websphere Application Server 7.0.0.17
Ibm Websphere Application Server 7.0.0.10
Ibm Websphere Application Server 7.0.0.1
Ibm Websphere Application Server 8.5.5.2
Ibm Websphere Application Server 8.5.5.3
Ibm Websphere Application Server 7.0.0.33
Ibm Websphere Application Server 7.0.0.32
Ibm Websphere Application Server 7.0.0.22
Ibm Websphere Application Server 7.0.0.21
Ibm Websphere Application Server 7.0.0.14
Ibm Websphere Application Server 7.0.0.13
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 8.5.5.4
Ibm Websphere Application Server 7.0.0.38
Ibm Websphere Application Server 7.0.0.31
9
CVSSv2
CVE-2020-4464
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional could allow a remote malicious user to execute arbitrary code on a system with a specially-crafted sequence of serialized objects over the SOAP connector. IBM X-Force ID: 181489.
Ibm Websphere Application Server
2 Github repositories
9
CVSSv2
CVE-2015-4947
Stack-based buffer overflow in the Administration Server in IBM HTTP Server 6.1.0.x up to and including 6.1.0.47, 7.0.0.x prior to 7.0.0.39, 8.0.0.x prior to 8.0.0.12, and 8.5.x prior to 8.5.5.7, as used in WebSphere Application Server and other products, allows remote authentica...
Ibm Http Server
8.5
CVSSv2
CVE-2015-1882
Multiple race conditions in IBM WebSphere Application Server (WAS) 8.5 Liberty Profile prior to 8.5.5.5 allow remote authenticated users to gain privileges by leveraging thread conflicts that result in Java code execution outside the context of the configured EJB Run-as user.
Ibm Websphere Application Server 8.5.5.0
Ibm Websphere Application Server 8.5.5.1
Ibm Websphere Application Server 8.5.5.2
Ibm Websphere Application Server 8.5.5.3
Ibm Websphere Application Server 8.5.0.0
Ibm Websphere Application Server 8.5.0.2
Ibm Websphere Application Server 8.5.5.4
Ibm Websphere Application Server 8.5.0.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
HTML injection
CVE-2024-35894
SQL
CVE-2024-5105
CVE-2014-100005
CVE-2024-35895
unauthorized
CVE-2024-22120
CVE-2024-35890
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »