9.3
CVSSv2

CVE-2015-1885

Published: 27/04/2015 Updated: 22/12/2016
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 prior to 7.0.0.39, 8.0 prior to 8.0.0.11, 8.5 Liberty Profile prior to 8.5.5.5, and 8.5 Full Profile prior to 8.5.5.6, when the OAuth grant type requires sending a password, allows remote malicious users to gain privileges via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 8.5.0.1

ibm websphere application server 8.5.0.2

ibm websphere application server 7.0.0.37

ibm websphere application server 7.0.0.36

ibm websphere application server 7.0.0.29

ibm websphere application server 7.0.0.27

ibm websphere application server 7.0.0.18

ibm websphere application server 7.0.0.17

ibm websphere application server 7.0.0.10

ibm websphere application server 7.0.0.1

ibm websphere application server 8.5.5.2

ibm websphere application server 8.5.5.3

ibm websphere application server 7.0.0.33

ibm websphere application server 7.0.0.32

ibm websphere application server 7.0.0.22

ibm websphere application server 7.0.0.21

ibm websphere application server 7.0.0.14

ibm websphere application server 7.0.0.13

ibm websphere application server 8.5.0.0

ibm websphere application server 8.5.5.4

ibm websphere application server 7.0.0.38

ibm websphere application server 7.0.0.31

ibm websphere application server 7.0.0.3

ibm websphere application server 7.0.0.2

ibm websphere application server 7.0.0.19

ibm websphere application server 7.0.0.12

ibm websphere application server 7.0.0.11

ibm websphere application server 8.5.5.0

ibm websphere application server 8.5.5.1

ibm websphere application server 7.0.0.35

ibm websphere application server 7.0.0.34

ibm websphere application server 7.0.0.25

ibm websphere application server 7.0.0.24

ibm websphere application server 7.0.0.23

ibm websphere application server 7.0.0.16

ibm websphere application server 7.0.0.15

ibm websphere application server 7.0