8.1
CVSSv3

CVE-2017-1151

CVSSv4: NA | CVSSv3: 8.1 | CVSSv2: 6.8 | VMScore: 910 | EPSS: 0.00558 | KEV: Not Included
Published: 20/03/2017 Updated: 20/04/2025

Vulnerability Summary

IBM WebSphere Application Server 8.0, 8.5, 8.5.5, and 9.0 using OpenID Connect (OIDC) configured with a Trust Association Interceptor (TAI) could allow a user to gain elevated privileges on the system. IBM Reference #: 1999293.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm corporation websphere application server

ibm websphere application server 8.0

ibm websphere application server 8.5

ibm websphere application server 8.5.5

ibm websphere application server 9.0