IBM WebSphere Application Server Liberty Profile 8.5.x prior to 8.5.5.4 allows remote malicious users to gain privileges by leveraging the combination of a servlet's deployment descriptor security constraints and ServletSecurity annotations.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm websphere application server 8.5.0.1 |
||
ibm websphere application server 8.5.0.0 |
||
ibm websphere application server 8.5.5.3 |
||
ibm websphere application server 8.5.5.2 |
||
ibm websphere application server 8.5.5.1 |
||
ibm websphere application server 8.5.5.0 |
||
ibm websphere application server 8.5.0.2 |