CVE Vulnerabilities

CVE-2009-0432

Published: Feb 10, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The installation process for the File Transfer servlet in the System Management/Repository component in IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.19 does not enable the secure version, which allows remote attackers to obtain sensitive information via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
Websphere_application_serverIbm6.1.0.1 (including)6.1.0.1 (including)
Websphere_application_serverIbm6.1.0.2 (including)6.1.0.2 (including)
Websphere_application_serverIbm6.1.0.3 (including)6.1.0.3 (including)
Websphere_application_serverIbm6.1.0.5 (including)6.1.0.5 (including)
Websphere_application_serverIbm6.1.0.7 (including)6.1.0.7 (including)
Websphere_application_serverIbm6.1.0.9 (including)6.1.0.9 (including)
Websphere_application_serverIbm6.1.0.11 (including)6.1.0.11 (including)
Websphere_application_serverIbm6.1.0.13 (including)6.1.0.13 (including)
Websphere_application_serverIbm6.1.0.15 (including)6.1.0.15 (including)
Websphere_application_serverIbm6.1.0.17 (including)6.1.0.17 (including)

References