CVE-2020-4464
17.07.2020, 14:15
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional could allow a remote attacker to execute arbitrary code on a system with a specially-crafted sequence of serialized objects over the SOAP connector. IBM X-Force ID: 181489.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | websphere_application_server | 7.0.0.0 ≤ 𝑥 ≤ 7.0.0.45 |
| ibm | websphere_application_server | 8.0.0.0 ≤ 𝑥 ≤ 8.0.0.15 |
| ibm | websphere_application_server | 8.5.0.0 ≤ 𝑥 ≤ 8.5.5.17 |
| ibm | websphere_application_server | 9.0.0.0 ≤ 𝑥 ≤ 9.0.5.4 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| ibm | websphere | 7.0 | CNA |
| ibm | websphere | 8.0 | CNA |
| ibm | websphere | 8.5 | CNA |
| ibm | websphere | 9.0 | CNA |
Common Weakness Enumeration
References