7.5
CVSSv2

CVE-2006-6537

Published: 14/12/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

IBM WebSphere Host On-Demand 6.0, 7.0, 8.0, 9.0, and possibly 10, allows remote malicious users to bypass authentication via a modified pnl parameter, related to hod/HODAdmin.html and hod/frameset.html.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere host on-demand 8.0

ibm websphere host on-demand 9.0

ibm websphere host on-demand 6.0

ibm websphere host on-demand 7.0