Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 5.1.0 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-0425
Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via a crafted URL that causes the page to be processed by the file serving servlet instead of ...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 6.0
7.5
CVSSv2
CVE-2006-2432
IBM WebSphere Application Server 5.0.2 (or any earlier cumulative fix) and 5.1.1 (or any earlier cumulative fix) allows EJB access on Solaris systems via a crafted LTPA token.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
6.4
CVSSv2
CVE-2006-2435
Unspecified vulnerability in IBM WebSphere Application Server 5.0.2 and previous versions, and 5.1.1 and previous versions, has unknown impact and attack vectors related to "Inserting certain script tags in urls [that] may allow unintended execution of scripts."
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2
4.3
CVSSv2
CVE-2006-7165
IBM WebSphere Application Server (WAS) 5.0 up to and including 5.1.1.0 allows remote malicious users to obtain JSP source code and other sensitive information via certain "special URIs."
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0.3
4.3
CVSSv2
CVE-2005-2091
IBM WebSphere 5.1 and WebSphere 5.0 allows remote malicious users to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes W...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.0
6.2
CVSSv2
CVE-2009-0506
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1 and 6.0.2 prior to 6.0.2.33 on z/OS, when CSIv2 Identity Assertion is enabled and Enterprise JavaBeans (EJB) interaction occurs between a WAS 6.1 instance and a WAS pre-6.1 instance, allows local users to hav...
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 6.0.2.8
Ibm Websphere Application Server 6.0.2.10
Ibm Websphere Application Server 6.0.2.12
Ibm Websphere Application Server 6.0.2.14
Ibm Websphere Application Server 6.0.2.16
Ibm Websphere Application Server 6.0.2.18
Ibm Websphere Application Server 6.0.2.20
Ibm Websphere Application Server 6.0.2.22
Ibm Websphere Application Server 6.0.2.24
5
CVSSv2
CVE-2005-4834
IBM WebSphere Application Server (WAS) 5.0.2.5 up to and including 5.1.1.3 allows remote malicious users to obtain JSP source code and other sensitive information, related to incorrect request processing by the web container.
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 5.1.0.3
Ibm Websphere Application Server 5.0.2.7
10
CVSSv2
CVE-2006-2430
IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.1 and previous versions, and 6.0.2 up to 6.0.2.7 records user credentials in plaintext in addNode.log, which allows malicious users to gain privileges.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 5.0.2
5
CVSSv2
CVE-2005-1112
IBM WebSphere Application Server 6.0 and previous versions, when sharing the document root of the web server, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via an HTTP request with an invalid Host header, which causes the page to be processe...
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.7
1 EDB exploit
4.3
CVSSv2
CVE-2006-2431
Cross-site scripting (XSS) vulnerability in the 500 Internal Server Error page on the SOAP port (8880/tcp) in IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.x prior to 5.1.1.12, and 6.0.2 up to 6.0.2.7, allows remote malicious users to inject arbitrary web scri...
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.1.0.3
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5834
CVE-2024-30100
CVE-2024-4577
physical
dos
CVE-2024-30099
CVE-2024-27801
CVE-2024-32146
logic flaw
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »