CVE Vulnerabilities

CVE-2015-2017

Published: Nov 08, 2015 | Modified: Dec 07, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

CRLF injection vulnerability in IBM WebSphere Application Server (WAS) 6.1 through 6.1.0.47, 7.0 before 7.0.0.39, 8.0 before 8.0.0.12, and 8.5 before 8.5.5.8 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL.

Affected Software

Name Vendor Start Version End Version
Websphere_application_server Ibm 6.1 (including) 6.1 (including)
Websphere_application_server Ibm 6.1.0 (including) 6.1.0 (including)
Websphere_application_server Ibm 6.1.0.0 (including) 6.1.0.0 (including)
Websphere_application_server Ibm 6.1.0.1 (including) 6.1.0.1 (including)
Websphere_application_server Ibm 6.1.0.2 (including) 6.1.0.2 (including)
Websphere_application_server Ibm 6.1.0.3 (including) 6.1.0.3 (including)
Websphere_application_server Ibm 6.1.0.5 (including) 6.1.0.5 (including)
Websphere_application_server Ibm 6.1.0.7 (including) 6.1.0.7 (including)
Websphere_application_server Ibm 6.1.0.9 (including) 6.1.0.9 (including)
Websphere_application_server Ibm 6.1.0.11 (including) 6.1.0.11 (including)
Websphere_application_server Ibm 6.1.0.12 (including) 6.1.0.12 (including)
Websphere_application_server Ibm 6.1.0.13 (including) 6.1.0.13 (including)
Websphere_application_server Ibm 6.1.0.14 (including) 6.1.0.14 (including)
Websphere_application_server Ibm 6.1.0.15 (including) 6.1.0.15 (including)
Websphere_application_server Ibm 6.1.0.17 (including) 6.1.0.17 (including)
Websphere_application_server Ibm 6.1.0.19 (including) 6.1.0.19 (including)
Websphere_application_server Ibm 6.1.0.21 (including) 6.1.0.21 (including)
Websphere_application_server Ibm 6.1.0.23 (including) 6.1.0.23 (including)
Websphere_application_server Ibm 6.1.0.25 (including) 6.1.0.25 (including)
Websphere_application_server Ibm 6.1.0.27 (including) 6.1.0.27 (including)
Websphere_application_server Ibm 6.1.0.29 (including) 6.1.0.29 (including)
Websphere_application_server Ibm 6.1.0.31 (including) 6.1.0.31 (including)
Websphere_application_server Ibm 6.1.0.33 (including) 6.1.0.33 (including)
Websphere_application_server Ibm 6.1.0.35 (including) 6.1.0.35 (including)
Websphere_application_server Ibm 6.1.0.37 (including) 6.1.0.37 (including)
Websphere_application_server Ibm 6.1.0.39 (including) 6.1.0.39 (including)
Websphere_application_server Ibm 6.1.0.41 (including) 6.1.0.41 (including)
Websphere_application_server Ibm 6.1.0.43 (including) 6.1.0.43 (including)
Websphere_application_server Ibm 6.1.0.45 (including) 6.1.0.45 (including)
Websphere_application_server Ibm 6.1.0.47 (including) 6.1.0.47 (including)
Websphere_application_server Ibm 7.0 (including) 7.0 (including)
Websphere_application_server Ibm 7.0.0.1 (including) 7.0.0.1 (including)
Websphere_application_server Ibm 7.0.0.2 (including) 7.0.0.2 (including)
Websphere_application_server Ibm 7.0.0.3 (including) 7.0.0.3 (including)
Websphere_application_server Ibm 7.0.0.4 (including) 7.0.0.4 (including)
Websphere_application_server Ibm 7.0.0.5 (including) 7.0.0.5 (including)
Websphere_application_server Ibm 7.0.0.6 (including) 7.0.0.6 (including)
Websphere_application_server Ibm 7.0.0.7 (including) 7.0.0.7 (including)
Websphere_application_server Ibm 7.0.0.8 (including) 7.0.0.8 (including)
Websphere_application_server Ibm 7.0.0.9 (including) 7.0.0.9 (including)
Websphere_application_server Ibm 7.0.0.10 (including) 7.0.0.10 (including)
Websphere_application_server Ibm 7.0.0.11 (including) 7.0.0.11 (including)
Websphere_application_server Ibm 7.0.0.12 (including) 7.0.0.12 (including)
Websphere_application_server Ibm 7.0.0.13 (including) 7.0.0.13 (including)
Websphere_application_server Ibm 7.0.0.14 (including) 7.0.0.14 (including)
Websphere_application_server Ibm 7.0.0.15 (including) 7.0.0.15 (including)
Websphere_application_server Ibm 7.0.0.16 (including) 7.0.0.16 (including)
Websphere_application_server Ibm 7.0.0.17 (including) 7.0.0.17 (including)
Websphere_application_server Ibm 7.0.0.18 (including) 7.0.0.18 (including)
Websphere_application_server Ibm 7.0.0.19 (including) 7.0.0.19 (including)
Websphere_application_server Ibm 7.0.0.21 (including) 7.0.0.21 (including)
Websphere_application_server Ibm 7.0.0.22 (including) 7.0.0.22 (including)
Websphere_application_server Ibm 7.0.0.23 (including) 7.0.0.23 (including)
Websphere_application_server Ibm 7.0.0.24 (including) 7.0.0.24 (including)
Websphere_application_server Ibm 7.0.0.25 (including) 7.0.0.25 (including)
Websphere_application_server Ibm 7.0.0.27 (including) 7.0.0.27 (including)
Websphere_application_server Ibm 7.0.0.29 (including) 7.0.0.29 (including)
Websphere_application_server Ibm 7.0.0.31 (including) 7.0.0.31 (including)
Websphere_application_server Ibm 7.0.0.32 (including) 7.0.0.32 (including)
Websphere_application_server Ibm 7.0.0.33 (including) 7.0.0.33 (including)
Websphere_application_server Ibm 7.0.0.34 (including) 7.0.0.34 (including)
Websphere_application_server Ibm 7.0.0.36 (including) 7.0.0.36 (including)
Websphere_application_server Ibm 7.0.0.37 (including) 7.0.0.37 (including)
Websphere_application_server Ibm 7.0.0.38 (including) 7.0.0.38 (including)
Websphere_application_server Ibm 8.0.0.0 (including) 8.0.0.0 (including)
Websphere_application_server Ibm 8.0.0.1 (including) 8.0.0.1 (including)
Websphere_application_server Ibm 8.0.0.2 (including) 8.0.0.2 (including)
Websphere_application_server Ibm 8.0.0.3 (including) 8.0.0.3 (including)
Websphere_application_server Ibm 8.0.0.4 (including) 8.0.0.4 (including)
Websphere_application_server Ibm 8.0.0.5 (including) 8.0.0.5 (including)
Websphere_application_server Ibm 8.0.0.6 (including) 8.0.0.6 (including)
Websphere_application_server Ibm 8.0.0.7 (including) 8.0.0.7 (including)
Websphere_application_server Ibm 8.0.0.8 (including) 8.0.0.8 (including)
Websphere_application_server Ibm 8.0.0.9 (including) 8.0.0.9 (including)
Websphere_application_server Ibm 8.0.0.10 (including) 8.0.0.10 (including)
Websphere_application_server Ibm 8.0.0.11 (including) 8.0.0.11 (including)
Websphere_application_server Ibm 8.5.5.0 (including) 8.5.5.0 (including)
Websphere_application_server Ibm 8.5.5.1 (including) 8.5.5.1 (including)
Websphere_application_server Ibm 8.5.5.2 (including) 8.5.5.2 (including)
Websphere_application_server Ibm 8.5.5.3 (including) 8.5.5.3 (including)
Websphere_application_server Ibm 8.5.5.4 (including) 8.5.5.4 (including)
Websphere_application_server Ibm 8.5.5.5 (including) 8.5.5.5 (including)
Websphere_application_server Ibm 8.5.5.6 (including) 8.5.5.6 (including)
Websphere_application_server Ibm 8.5.5.7 (including) 8.5.5.7 (including)

References