4.3
CVSSv2

CVE-2011-1209

Published: 04/05/2011 Updated: 17/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

IBM WebSphere Application Server (WAS) 6.1 prior to 6.1.0.39 and 7.0 prior to 7.0.0.17 uses a weak WS-Security XML encryption algorithm, which makes it easier for remote malicious users to obtain plaintext data from a (1) JAX-RPC or (2) JAX-WS Web Services request via unspecified vectors related to a "decryption attack."

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 6.1.0.1

ibm websphere application server 6.1.0.7

ibm websphere application server 6.1.7

ibm websphere application server 6.1.5

ibm websphere application server 6.1.1

ibm websphere application server 6.1.0.19

ibm websphere application server 6.1.0.37

ibm websphere application server 6.1.0.5

ibm websphere application server 6.1.0.15

ibm websphere application server 6.1.0.0

ibm websphere application server 6.1.0.11

ibm websphere application server 6.1.0.32

ibm websphere application server 6.1.0.3

ibm websphere application server 6.1.0.33

ibm websphere application server 6.1.0.24

ibm websphere application server 6.1.0.22

ibm websphere application server 6.1.0.23

ibm websphere application server 6.1.0.2

ibm websphere application server 6.1.0.25

ibm websphere application server 6.1.0

ibm websphere application server 6.1.0.12

ibm websphere application server 6.1.0.9

ibm websphere application server 6.1.0.21

ibm websphere application server 6.1.13

ibm websphere application server 6.1.6

ibm websphere application server 6.1.0.31

ibm websphere application server 6.1.0.17

ibm websphere application server 6.1.0.27

ibm websphere application server 6.1.3

ibm websphere application server 6.1.14

ibm websphere application server 6.1.0.35

ibm websphere application server 6.1.0.29

ibm websphere application server 7.0.0.5

ibm websphere application server 7.0.0.1

ibm websphere application server 7.0.0.12

ibm websphere application server 7.0.0.7

ibm websphere application server 7.0.0.9

ibm websphere application server 7.0.0.8

ibm websphere application server 7.0.0.3

ibm websphere application server 7.0.0.6

ibm websphere application server 7.0.0.2

ibm websphere application server 7.0.0.4

ibm websphere application server 7.0.0.11

ibm websphere application server 7.0.0.10

ibm websphere application server 7.0.0.13

ibm websphere application server 7.0.0.15