Total vulnerabilities in the database
The Servlet Engine and Web Container in IBM WebSphere Application Server (WAS) before 6.0.2.17, when ibm-web-ext.xmi sets fileServingEnabled to true and servlet caching is enabled, allows remote attackers to obtain JSP source code and other sensitive information via "specific requests."
Software | From | Fixed in |
---|---|---|
ibm / websphere_application_server | 6.0.2.1 | 6.0.2.1.x |
ibm / websphere_application_server | 6.0.2.5 | 6.0.2.5.x |
ibm / websphere_application_server | 6.0.2.13 | 6.0.2.13.x |
ibm / websphere_application_server | 6.0.2.9 | 6.0.2.9.x |
ibm / websphere_application_server | 6.0.2.11 | 6.0.2.11.x |
ibm / websphere_application_server | 6.0.2.15 | 6.0.2.15.x |
ibm / websphere_application_server | 6.0.2.7 | 6.0.2.7.x |
ibm / websphere_application_server | 6.0.2.3 | 6.0.2.3.x |