Ibm

Websphere Application Server

519 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.48%
  • Veröffentlicht 05.08.2026 16:17:09
  • Zuletzt bearbeitet 10.08.2026 15:57:45

IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty Continuous delivery has a flaw in the ORB component in IBM SDK, Java Technology Edition, may allow a malicious IIOP server to induce loading and instantation...

  • EPSS 0.34%
  • Veröffentlicht 30.07.2026 19:02:33
  • Zuletzt bearbeitet 05.08.2026 20:31:02

IBM WebSphere Application Server 9.0, and 8.5 is affected by a remote code execution vulnerability in the SOAP/JMX connector.

  • EPSS 0.31%
  • Veröffentlicht 30.07.2026 16:16:53
  • Zuletzt bearbeitet 05.08.2026 14:15:05

IBM WebSphere Application Server 8.5, and 9.0 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 Traditional and Liberty could allow a remote attacker to bypass security constraints.

  • EPSS 0.31%
  • Veröffentlicht 30.07.2026 16:13:03
  • Zuletzt bearbeitet 12.08.2026 18:47:44

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 are vulnerable to a denial of service via a crafted HTTP request.

  • EPSS 0.3%
  • Veröffentlicht 30.07.2026 14:18:04
  • Zuletzt bearbeitet 04.08.2026 15:26:57

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to a denial of service, caused by sending a specially crafted request. A remote attacker could exploit this vulnerability to cause the server to consume memory resourc...

  • EPSS 0.22%
  • Veröffentlicht 30.07.2026 14:15:25
  • Zuletzt bearbeitet 18.08.2026 13:27:06

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site scripting vulnerability in the administrative console login page.

  • EPSS 0.17%
  • Veröffentlicht 30.07.2026 14:12:41
  • Zuletzt bearbeitet 18.08.2026 13:27:29

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by cross-site scripting in the Administrative Console.

  • EPSS 0.24%
  • Veröffentlicht 30.07.2026 14:09:23
  • Zuletzt bearbeitet 04.08.2026 15:23:30

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to perform SSRF attacks with elevated privileges when the collectiveController-1.0 feature is enabled.

Medienbericht
  • EPSS 0.1%
  • Veröffentlicht 29.07.2026 18:19:36
  • Zuletzt bearbeitet 04.08.2026 14:10:12

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.

Medienbericht
  • EPSS 0.36%
  • Veröffentlicht 29.07.2026 18:15:18
  • Zuletzt bearbeitet 04.08.2026 14:14:17

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 traditional is vulnerable to server-side request forgery (SSRF) when the SIP container feature (sipServlet-1.1) is enabled.