Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 5.0.2 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-2432
IBM WebSphere Application Server 5.0.2 (or any earlier cumulative fix) and 5.1.1 (or any earlier cumulative fix) allows EJB access on Solaris systems via a crafted LTPA token.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
NA
CVE-2006-2435
Unspecified vulnerability in IBM WebSphere Application Server 5.0.2 and previous versions, and 5.1.1 and previous versions, has unknown impact and attack vectors related to "Inserting certain script tags in urls [that] may allow unintended execution of scripts."
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
NA
CVE-2006-2436
WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the FFDC logs when a login to WebSphere fails, which allows malicious users to gain privileges.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
NA
CVE-2006-2430
IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.1 and previous versions, and 6.0.2 up to 6.0.2.7 records user credentials in plaintext in addNode.log, which allows malicious users to gain privileges.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 5.0.2
NA
CVE-2006-7164
SimpleFileServlet in IBM WebSphere Application Server 5.0.1 up to and including 5.0.2.7 on Linux and UNIX does not block certain invalid URIs and does not issue a security challenge, which allows remote malicious users to read secure files and obtain sensitive information via cer...
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.7
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.0.2.14
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.0.2.16
NA
CVE-2005-1112
IBM WebSphere Application Server 6.0 and previous versions, when sharing the document root of the web server, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via an HTTP request with an invalid Host header, which causes the page to be processe...
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.7
1 EDB exploit
NA
CVE-2006-2431
Cross-site scripting (XSS) vulnerability in the 500 Internal Server Error page on the SOAP port (8880/tcp) in IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.x prior to 5.1.1.12, and 6.0.2 up to 6.0.2.7, allows remote malicious users to inject arbitrary web scri...
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.1.0.3
1 EDB exploit
NA
CVE-2006-1093
Unspecified vulnerability in IBM WebSphere 5.0.2.10 up to and including 5.0.2.15 and 5.1.1.4 up to and including 5.1.1.9 allows remote malicious users to obtain sensitive information via unknown attack vectors, which causes JSP source code to be revealed.
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.0.2.13
Ibm Websphere Application Server 5.1.1.8
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.1.1.9
Ibm Websphere Application Server 5.0.2.14
NA
CVE-2006-7166
IBM WebSphere Application Server (WAS) 5.1.1.9 and previous versions allows remote malicious users to obtain JSP source code and other sensitive information via "a specific JSP URL."
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.1.7
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.0.2.16
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.0.2.2
Ibm Websphere Application Server 5.1.1.1
NA
CVE-2008-2221
Unspecified vulnerability in the Java plugin in IBM WebSphere Application Server 5.0.2 allows untrusted applets to gain privileges via unknown attack vectors.
Ibm Websphere Application Server 5.0.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
buffer overflow
type confusion
server-side request forgery
CVE-2024-38440
CVE-2024-27801
CVE-2024-5868
CVE-2024-0582
CVE-2024-37643
CVE-2024-3105
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »