Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm websphere application server 5.1.0 vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-0425
Unknown vulnerability in IBM Websphere Application Server 5.0, 5.1, and 6.0 when running on Windows, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via a crafted URL that causes the page to be processed by the file serving servlet instead of ...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 6.0
5
CVSSv2
CVE-2005-1112
IBM WebSphere Application Server 6.0 and previous versions, when sharing the document root of the web server, allows remote malicious users to obtain the source code for Java Server Pages (.jsp) via an HTTP request with an invalid Host header, which causes the page to be processe...
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 5.0.2.9
Ibm Websphere Application Server 5.0.2.6
Ibm Websphere Application Server 6.0
Ibm Websphere Application Server 5.0.2.4
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.0.2.7
1 EDB exploit
4.3
CVSSv2
CVE-2011-1308
Cross-site scripting (XSS) vulnerability in the Installation Verification Test (IVT) application in the Install component in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.1.0.21
Ibm Websphere Application Server 6.1.0.31
Ibm Websphere Application Server 3.0.21
Ibm Websphere Application Server 6.1.7
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.1
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 6.1.0.19
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 6.1.6
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 6.1.0.2
4.3
CVSSv2
CVE-2006-7165
IBM WebSphere Application Server (WAS) 5.0 up to and including 5.1.1.0 allows remote malicious users to obtain JSP source code and other sensitive information via certain "special URIs."
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 5.1.0.3
4.3
CVSSv2
CVE-2006-3231
Unspecified vulnerability in IBM WebSphere Application Server (WAS) prior to 6.0.2.11, when fileServingEnabled is true, allows remote malicious users to obtain JSP source code and other sensitive information via "URIs with special characters."
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.0.2.11
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 3.5
Ibm Websphere Application Server 5.1.1.6
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 5.0.2.3
Ibm Websphere Application Server 5.0.2.15
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 5.1.1.3
Ibm Websphere Application Server 5.0.2.12
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 5.0.2.8
Ibm Websphere Application Server 3.5.2
4.3
CVSSv2
CVE-2006-2431
Cross-site scripting (XSS) vulnerability in the 500 Internal Server Error page on the SOAP port (8880/tcp) in IBM WebSphere Application Server 5.0.2 and previous versions, 5.1.x prior to 5.1.1.12, and 6.0.2 up to 6.0.2.7, allows remote malicious users to inject arbitrary web scri...
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 5.0.1
Ibm Websphere Application Server 6.0.2.6
Ibm Websphere Application Server 5.1.1.10
Ibm Websphere Application Server 6.0.2.2
Ibm Websphere Application Server 6.0.2
Ibm Websphere Application Server 6.0.2.4
Ibm Websphere Application Server 5.1.0.4
Ibm Websphere Application Server 5.1.0.2
Ibm Websphere Application Server 6.0.2.7
Ibm Websphere Application Server 5.1.1.1
Ibm Websphere Application Server 6.0.2.3
Ibm Websphere Application Server 5.0.2
Ibm Websphere Application Server 5.1.1.11
Ibm Websphere Application Server 5.1.0.3
1 EDB exploit
4.3
CVSSv2
CVE-2005-2091
IBM WebSphere 5.1 and WebSphere 5.0 allows remote malicious users to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes W...
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 5.1.0
3.5
CVSSv2
CVE-2020-4318
IBM Intelligent Operations Center for Emergency Management, Intelligent Operations Center (IOC), and IBM Water Operations for Waternamics are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the int...
Ibm Intelligent Operations Center 5.1.0.3
Ibm Intelligent Operations Center For Emergency Management 5.1.0
Ibm Intelligent Operations Center 5.1.0
Ibm Intelligent Operations Center 5.1.0.2
Ibm Intelligent Operations Center 5.1.0.4
Ibm Intelligent Operations Center 5.1.0.6
Ibm Intelligent Operations Center 5.2
Ibm Intelligent Operations Center 5.2.1
Ibm Intelligent Operations Center For Emergency Management 5.1.0.2
Ibm Intelligent Operations Center For Emergency Management 5.1.0.3
Ibm Intelligent Operations Center For Emergency Management 5.1.0.4
Ibm Intelligent Operations Center For Emergency Management 5.1.0.6
Ibm Water Operations For Waternamics 5.1.0
Ibm Water Operations For Waternamics 5.1.0.3
Ibm Water Operations For Waternamics 5.1.0.4
Ibm Water Operations For Waternamics 5.1.0.6
Ibm Water Operations For Waternamics 5.2
Ibm Water Operations For Waternamics 5.2.1
2.6
CVSSv2
CVE-2009-0433
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1.x prior to 5.1.1.19, 6.0.x prior to 6.0.2.29, and 6.1.x prior to 6.1.0.19, when Web Server plug-in content buffering is enabled, allows malicious users to cause a denial of service (daemon crash) via unknown ...
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.1
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 6.1.0.2
Ibm Websphere Application Server 5.1.1
Ibm Websphere Application Server 5.1.0
Ibm Websphere Application Server 6.0.1.15
Ibm Websphere Application Server 6.1.0.4
Ibm Websphere Application Server 6.0.1.3
Ibm Websphere Application Server 6.0.2.13
Ibm Websphere Application Server 6.1.0.11
Ibm Websphere Application Server 6.0.2.9
Ibm Websphere Application Server 5.1.1.15
Ibm Websphere Application Server 6.0.1.11
Ibm Websphere Application Server 6.0.2.28
Ibm Websphere Application Server 5.1.1.13
Ibm Websphere Application Server 6.1.0.14
Ibm Websphere Application Server 6.0.2.11
Ibm Websphere Application Server 6.0.2.6
2.1
CVSSv2
CVE-2011-1307
The installer in IBM WebSphere Application Server (WAS) prior to 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standard filesystem operations, a different vulnerability than CVE-2009-1173.
Ibm Websphere Application Server 5.0.0
Ibm Websphere Application Server 6.1.0.21
Ibm Websphere Application Server 6.1.0.31
Ibm Websphere Application Server 3.0.21
Ibm Websphere Application Server 6.1.7
Ibm Websphere Application Server 5.1.0.5
Ibm Websphere Application Server 6.1
Ibm Websphere Application Server 7.0.0.2
Ibm Websphere Application Server 5.0.2.10
Ibm Websphere Application Server 5.1.1.14
Ibm Websphere Application Server 5.0.2.5
Ibm Websphere Application Server 5.0.2.1
Ibm Websphere Application Server 6.1.0.19
Ibm Websphere Application Server 5.1.1.2
Ibm Websphere Application Server 6.1.6
Ibm Websphere Application Server 3.0.2.1
Ibm Websphere Application Server 7.0.0.5
Ibm Websphere Application Server 5.0
Ibm Websphere Application Server 6.0.2.1
Ibm Websphere Application Server 6.0.2.5
Ibm Websphere Application Server 6.0.0.3
Ibm Websphere Application Server 6.1.0.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3