Vulnerability Name: | CVE-2007-3960 (CCN-35570) | ||||||||
Assigned: | 2007-07-20 | ||||||||
Published: | 2007-07-20 | ||||||||
Updated: | 2011-03-08 | ||||||||
Summary: | Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknown impact and attack vectors, aka (1) PK33799, or (2) a "Potential security exposure" in the Samples component (PK40213). | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C) 6.9 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.8 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Other | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-3960 Source: OSVDB Type: UNKNOWN 41615 Source: OSVDB Type: UNKNOWN 44217 Source: CCN Type: SA26183 IBM WebSphere Application Server Unspecified Vulnerability Source: SECUNIA Type: Patch, Vendor Advisory 26183 Source: CCN Type: SECTRACK ID: 1018448 IBM WebSphere Input Validation Hole in Sample Application Permits Cross-Site Scripting Attacks Source: AIXAPAR Type: UNKNOWN PK40213 Source: CCN Type: IBM Web site Fix list for WebSphere Application Server Version 6.0.2 Source: CCN Type: IBM Support & downloads Downloads and Drivers Source: CCN Type: OSVDB ID: 41615 IBM WebSphere Application Server (WAS) Unspecified Issue (PK33799) Source: CCN Type: OSVDB ID: 44217 IBM WebSphere Application Server (WAS) Samples Component Unspecified Exposure (PK40213) Source: CCN Type: BID-25033 IBM WebSphere Application Server 6.0.2.19 Unspecified Vulnerability Source: SECTRACK Type: UNKNOWN 1018448 Source: VUPEN Type: UNKNOWN ADV-2007-2626 Source: XF Type: UNKNOWN websphere-appserver-unspecified(35570) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |