Vulnerability Name: | CVE-2006-4222 (CCN-28607) | ||||||||
Assigned: | 2006-08-14 | ||||||||
Published: | 2006-08-14 | ||||||||
Updated: | 2011-03-08 | ||||||||
Summary: | Multiple unspecified vulnerabilities in IBM WebSphere Application Server before 6.0.2.13 have unspecified vectors and impact, including (1) an "authority problem" in ThreadIdentitySupport as identified by PK25199, and "Potential security exposure" issues as identified by (2) PK22747, (3) PK24334, (4) PK25740, and (5) PK26123. | ||||||||
CVSS v3 Severity: | 4.8 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
3.0 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Other | ||||||||
References: | Source: MITRE Type: CNA CVE-2006-4222 Source: CCN Type: SA21487 IBM WebSphere Application Server Multiple Vulnerabilities Source: SECUNIA Type: Patch, Vendor Advisory 21487 Source: CCN Type: IBM Support Web site Fix list for WebSphere Application Server Version 6.0.2 Source: CONFIRM Type: Patch http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876#60213 Source: CCN Type: BID-19527 IBM WebSphere Application Server Prior to 6.0.2.13 Multiple Vulnerabilities Source: VUPEN Type: UNKNOWN ADV-2006-3281 Source: XF Type: UNKNOWN websphere-threadidentity-unspecified(28607) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |