10
CVSSv2

CVE-2010-3186

Published: 30/08/2010 Updated: 17/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

IBM WebSphere Application Server (WAS) 7.x prior to 7.0.0.13, and WebSphere Application Server Feature Pack for Web Services 6.1.0.9 up to and including 6.1.0.32, when a JAX-WS application is used, does not properly handle an IncludeTimestamp setting in the WS-Security policy, which has unspecified impact and remote attack vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 7.0.0.4

ibm websphere application server 7.0.0.5

ibm websphere application server 7.0.0.2

ibm websphere application server 7.0.0.3

ibm websphere application server 7.0.0.11

ibm websphere application server 7.0

ibm websphere application server 7.0.0.1

ibm websphere application server 7.0.0.9

ibm websphere application server 7.0.0.10

ibm websphere application server 7.0.0.6

ibm websphere application server 7.0.0.7

ibm websphere application server 6.1.0.9

ibm websphere application server 6.1.0.10

ibm websphere application server 6.1.0.18

ibm websphere application server 6.1.0.19

ibm websphere application server 6.1.0.26

ibm websphere application server 6.1.0.27

ibm websphere application server 6.1.0.16

ibm websphere application server 6.1.0.17

ibm websphere application server 6.1.0.24

ibm websphere application server 6.1.0.25

ibm websphere application server 6.1.0.13

ibm websphere application server 6.1.0.14

ibm websphere application server 6.1.0.15

ibm websphere application server 6.1.0.22

ibm websphere application server 6.1.0.23

ibm websphere application server 6.1.0.32

ibm websphere application server 6.1.0.11

ibm websphere application server 6.1.0.12

ibm websphere application server 6.1.0.20

ibm websphere application server 6.1.0.21

ibm websphere application server 6.1.0.29

ibm websphere application server 6.1.0.31