CVE-2007-3960
- EPSS 0.74%
- Veröffentlicht 24.07.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknown impact and attack vectors, aka (1) PK33799, or (2) a "Potential security exposure" in the Samples component (PK40213).
- EPSS 0.69%
- Veröffentlicht 26.06.2007 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The web container in IBM WebSphere Application Server (WAS) before 6.0.2.21, and 6.1.x before 6.1.0.9, sends response data intended for a different request in certain circumstances after a closed connection error, which might allow remote attackers t...
CVE-2007-3262
- EPSS 2.24%
- Veröffentlicht 19.06.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier allows remote attackers to cause a denial of service related to a thread hang, and possibly related to a "TCP issue," or to MPA...
- EPSS 1.35%
- Veröffentlicht 19.06.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Default Messaging Component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier has unknown impact and attack vectors, related to "incorrect authorization on a remote interface to the SDO repository."
- EPSS 1%
- Veröffentlicht 19.06.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the PD tools component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier has unknown impact and attack vectors.
CVE-2007-3265
- EPSS 0.69%
- Veröffentlicht 19.06.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in the Samples component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- EPSS 1.14%
- Veröffentlicht 30.04.2007 22:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in IBM WebSphere Application Server (WAS) before 5.1.1.14, and WAS for z/OS 601 before 6.0.2.13, has unknown impact and attack vectors, related to a "Potential security exposure," aka PK26123.
- EPSS 0.54%
- Veröffentlicht 11.04.2007 01:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 6.1.0.7 allows attackers to cause a denial of service via unknown vectors involving the "double release [of] a bytebuffer input stream," possibly a double free vulnerabil...
CVE-2007-1945
- EPSS 0.76%
- Veröffentlicht 11.04.2007 01:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Servlet Engine/Web Container in IBM WebSphere Application Server (WAS) before 6.1.0.7 has unknown impact and attack vectors.
CVE-2007-1608
- EPSS 1.14%
- Veröffentlicht 22.03.2007 23:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
CRLF injection vulnerability in IBM WebSphere Application Server (WAS) before 6.0.2.19 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a single CRLF sequence in a context that is not a valid mu...