6.2
CVSSv2

CVE-2009-0506

Published: 25/02/2009 Updated: 08/08/2017
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 552
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1 and 6.0.2 prior to 6.0.2.33 on z/OS, when CSIv2 Identity Assertion is enabled and Enterprise JavaBeans (EJB) interaction occurs between a WAS 6.1 instance and a WAS pre-6.1 instance, allows local users to have an unknown impact via vectors related to (1) use of the wrong subject and (2) multiple CBIND checks.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere_application_server 6.0.2.6

ibm websphere_application_server 6.0.2.8

ibm websphere_application_server 6.0.2.22

ibm websphere_application_server 6.0.2.24

ibm websphere_application_server 6.0.2

ibm websphere_application_server 6.0.2.4

ibm websphere_application_server 6.0.2.18

ibm websphere_application_server 6.0.2.20

ibm websphere_application_server 6.0.2.10

ibm websphere_application_server 6.0.2.12

ibm websphere_application_server 5.1.0

ibm websphere_application_server 6.0.2.14

ibm websphere_application_server 6.0.2.16