CVE-2014-8890
18.12.2014, 16:59
IBM WebSphere Application Server Liberty Profile 8.5.x before 8.5.5.4 allows remote attackers to gain privileges by leveraging the combination of a servlet's deployment descriptor security constraints and ServletSecurity annotations.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | websphere_application_server | 8.5.0.0 |
ibm | websphere_application_server | 8.5.0.1 |
ibm | websphere_application_server | 8.5.0.2 |
ibm | websphere_application_server | 8.5.5.0 |
ibm | websphere_application_server | 8.5.5.1 |
ibm | websphere_application_server | 8.5.5.2 |
ibm | websphere_application_server | 8.5.5.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References