CVE-2012-3325
30.08.2012, 22:55
IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.45, 7.0.x before 7.0.0.25, 8.0.x before 8.0.0.5, and 8.5.x Full Profile before 8.5.0.1, when the PM44303 fix is installed, does not properly validate credentials, which allows remote authenticated users to obtain administrative access via unspecified vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ibm | websphere_application_server | 6.1 |
| ibm | websphere_application_server | 6.1.0 |
| ibm | websphere_application_server | 6.1.0.0 |
| ibm | websphere_application_server | 6.1.0.1 |
| ibm | websphere_application_server | 6.1.0.2 |
| ibm | websphere_application_server | 6.1.0.3 |
| ibm | websphere_application_server | 6.1.0.5 |
| ibm | websphere_application_server | 6.1.0.7 |
| ibm | websphere_application_server | 6.1.0.9 |
| ibm | websphere_application_server | 6.1.0.11 |
| ibm | websphere_application_server | 6.1.0.12 |
| ibm | websphere_application_server | 6.1.0.15 |
| ibm | websphere_application_server | 6.1.0.17 |
| ibm | websphere_application_server | 6.1.0.19 |
| ibm | websphere_application_server | 6.1.0.21 |
| ibm | websphere_application_server | 6.1.0.23 |
| ibm | websphere_application_server | 6.1.0.25 |
| ibm | websphere_application_server | 6.1.0.27 |
| ibm | websphere_application_server | 6.1.0.29 |
| ibm | websphere_application_server | 6.1.0.31 |
| ibm | websphere_application_server | 6.1.0.33 |
| ibm | websphere_application_server | 6.1.0.35 |
| ibm | websphere_application_server | 6.1.0.37 |
| ibm | websphere_application_server | 6.1.0.39 |
| ibm | websphere_application_server | 6.1.0.41 |
| ibm | websphere_application_server | 6.1.0.43 |
| ibm | websphere_application_server | 6.1.1 |
| ibm | websphere_application_server | 6.1.3 |
| ibm | websphere_application_server | 6.1.5 |
| ibm | websphere_application_server | 6.1.6 |
| ibm | websphere_application_server | 6.1.7 |
| ibm | websphere_application_server | 6.1.13 |
| ibm | websphere_application_server | 6.1.14 |
| ibm | websphere_application_server | 7.0 |
| ibm | websphere_application_server | 7.0.0.1 |
| ibm | websphere_application_server | 7.0.0.2 |
| ibm | websphere_application_server | 7.0.0.3 |
| ibm | websphere_application_server | 7.0.0.4 |
| ibm | websphere_application_server | 7.0.0.5 |
| ibm | websphere_application_server | 7.0.0.6 |
| ibm | websphere_application_server | 7.0.0.7 |
| ibm | websphere_application_server | 7.0.0.8 |
| ibm | websphere_application_server | 7.0.0.9 |
| ibm | websphere_application_server | 7.0.0.11 |
| ibm | websphere_application_server | 7.0.0.13 |
| ibm | websphere_application_server | 7.0.0.15 |
| ibm | websphere_application_server | 7.0.0.17 |
| ibm | websphere_application_server | 7.0.0.19 |
| ibm | websphere_application_server | 7.0.0.21 |
| ibm | websphere_application_server | 7.0.0.23 |
| ibm | websphere_application_server | 8.0.0.0 |
| ibm | websphere_application_server | 8.0.0.1 |
| ibm | websphere_application_server | 8.0.0.2 |
| ibm | websphere_application_server | 8.0.0.3 |
| ibm | websphere_application_server | 8.0.0.4 |
| ibm | websphere_application_server | 8.5.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References