CVE Vulnerabilities

CVE-2011-1377

Published: Jan 15, 2012 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The Web Services Security component in the Web Services Feature Pack before 6.1.0.41 for IBM WebSphere Application Server (WAS) 6.1 does not properly handle the enabling of WS-Security for a JAX-WS application, which has unspecified impact and attack vectors.

Affected Software

Name Vendor Start Version End Version
Websphere_application_server Ibm 6.1 6.1
Websphere_application_server Ibm 6.1.0 6.1.0
Websphere_application_server Ibm 6.1.0.0 6.1.0.0
Websphere_application_server Ibm 6.1.0.1 6.1.0.1
Websphere_application_server Ibm 6.1.0.2 6.1.0.2
Websphere_application_server Ibm 6.1.0.3 6.1.0.3
Websphere_application_server Ibm 6.1.0.5 6.1.0.5
Websphere_application_server Ibm 6.1.0.7 6.1.0.7
Websphere_application_server Ibm 6.1.0.9 6.1.0.9
Websphere_application_server Ibm 6.1.0.11 6.1.0.11
Websphere_application_server Ibm 6.1.0.12 6.1.0.12
Websphere_application_server Ibm 6.1.0.15 6.1.0.15
Websphere_application_server Ibm 6.1.0.17 6.1.0.17
Websphere_application_server Ibm 6.1.0.19 6.1.0.19
Websphere_application_server Ibm 6.1.0.21 6.1.0.21
Websphere_application_server Ibm 6.1.0.23 6.1.0.23
Websphere_application_server Ibm 6.1.0.25 6.1.0.25
Websphere_application_server Ibm 6.1.0.27 6.1.0.27
Websphere_application_server Ibm 6.1.0.29 6.1.0.29
Websphere_application_server Ibm 6.1.0.31 6.1.0.31
Websphere_application_server Ibm 6.1.0.33 6.1.0.33
Websphere_application_server Ibm 6.1.0.35 6.1.0.35
Websphere_application_server Ibm 6.1.0.37 6.1.0.37
Websphere_application_server Ibm 6.1.0.39 6.1.0.39
Websphere_application_server Ibm 6.1.1 6.1.1
Websphere_application_server Ibm 6.1.3 6.1.3
Websphere_application_server Ibm 6.1.5 6.1.5
Websphere_application_server Ibm 6.1.6 6.1.6
Websphere_application_server Ibm 6.1.7 6.1.7
Websphere_application_server Ibm 6.1.13 6.1.13
Websphere_application_server Ibm 6.1.14 6.1.14

References