HIGH
IBM WebSphere Application Server 5.0.2 (or any earlier cumulative fix) and 5.1.1 (or any earlier cumulative fix) allows EJB access on Solaris systems via a crafted LTPA token
Published May 17, 2006
7.5
HIGHCVSS 2.0
EPSS 2.54%
Description
IBM WebSphere Application Server 5.0.2 (or any earlier cumulative fix) and 5.1.1 (or any earlier cumulative fix) allows EJB access on Solaris systems via a crafted LTPA token.
Affected products
No data.
OR
- 5.0.0
- 5.0.1
- 5.0.2
- 5.1.0
- 5.1.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (9)
- http://archives.neohapsis.com/archives/bugtraq/2006-05/0175.html mailing-listx_refsource_BUGTRAQPatch
- http://secunia.com/advisories/20032 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://securityreason.com/securityalert/910 third-party-advisoryx_refsource_SREASON
- http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006879 x_refsource_CONFIRMPatch
- http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006881 x_refsource_CONFIRMPatch
- http://www-1.ibm.com/support/search.wss?rs=0&q=PK19195&apar=only vendor-advisoryx_refsource_AIXAPARPatch
- http://www.osvdb.org/25375 vdb-entryx_refsource_OSVDB
- http://www.vupen.com/english/advisories/2006/1736 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2006/2552 vdb-entryx_refsource_VUPEN
| Link | Providers | Tags |
|---|---|---|
| http://archives.neohapsis.com/archives/bugtraq/2006-05/0175.html | mailing-listx_refsource_BUGTRAQPatch | |
| http://secunia.com/advisories/20032 | third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory | |
| http://securityreason.com/securityalert/910 | third-party-advisoryx_refsource_SREASON | |
| http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006879 | x_refsource_CONFIRMPatch | |
| http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006881 | x_refsource_CONFIRMPatch | |
| http://www-1.ibm.com/support/search.wss?rs=0&q=PK19195&apar=only | vendor-advisoryx_refsource_AIXAPARPatch | |
| http://www.osvdb.org/25375 | vdb-entryx_refsource_OSVDB | |
| http://www.vupen.com/english/advisories/2006/1736 | vdb-entryx_refsource_VUPEN | |
| http://www.vupen.com/english/advisories/2006/2552 | vdb-entryx_refsource_VUPEN |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 17, 2006
Updated Aug 7, 2024
Reserved May 17, 2006
Link CVE-2006-2432
CISA Vulnrichment
Updated n/a