7.5
CVSSv2

CVE-2006-2436

Published: 17/05/2006 Updated: 08/03/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the FFDC logs when a login to WebSphere fails, which allows malicious users to gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 5.0.0

ibm websphere application server 5.0.1

ibm websphere application server 5.0.2