4.4
CVSSv2

CVE-2015-1946

Published: 14/07/2015 Updated: 28/11/2016
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

IBM WebSphere Application Server (WAS) 8.5 prior to 8.5.5.6, and WebSphere Virtual Enterprise 7.0 prior to 7.0.0.6 for WebSphere Application Server (WAS) 7.0 and 8.0, does not properly implement user roles, which allows local users to gain privileges via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server 7.0

ibm websphere application server 8.5.0.2

ibm websphere application server 8.5.0.1

ibm websphere application server 8.5.5.1

ibm websphere application server 8.5.5.2

ibm websphere application server 8.5.5.3

ibm websphere application server 8.5.5.4

ibm websphere application server 8.5.5.5

ibm websphere application server 8.0.0.0

ibm websphere application server 8.5.5.0

ibm websphere application server 8.5.0.0

ibm websphere virtual enterprise 7.0.0.4

ibm websphere virtual enterprise 7.0.0.5

ibm websphere virtual enterprise 7.0

ibm websphere virtual enterprise 7.0.0.1

ibm websphere virtual enterprise 7.0.0.2

ibm websphere virtual enterprise 7.0.0.3