Rechercher
Contactez-nous Suivez-nous sur Twitter En francais English Language
 

Freely subscribe to our NEWSLETTER

Newsletter FR

Newsletter EN

Vulnérabilités

Unsubscribe

Vigil@nce - WebSphere AS 6.1: two vulnerabilities

August 2011 by Vigil@nce

This bulletin was written by Vigil@nce : http://vigilance.fr/offer

SYNTHESIS OF THE VULNERABILITY

An attacker can use several vulnerabilities of Websphere
Application Server.

Severity: 2/4

Creation date: 19/07/2011

IMPACTED PRODUCTS

 IBM WebSphere Application Server

DESCRIPTION OF THE VULNERABILITY

Two vulnerabilities were announced in Websphere Application Server.

An attacker can send a malicious query to the Administration
Console, in order to generate an error, which displays the stack
trace. [severity:2/4; 68571, BID-48709, CVE-2011-1356, PM36620,
was-admcons-info-disclosure]

An attacker can use the logoutExitPage parameter, in order to
create a redirection. [severity:2/4; 68570, BID-48710,
CVE-2011-1355, PM35701, was-logoutexitpage-security-bypass]

ACCESS TO THE COMPLETE VIGIL@NCE BULLETIN

http://vigilance.fr/vulnerability/WebSphere-AS-6-1-two-vulnerabilities-10849


See previous articles

    

See next articles


Your podcast Here

New, you can have your Podcast here. Contact us for more information ask:
Marc Brami
Phone: +33 1 40 92 05 55
Mail: ipsimp@free.fr

All new podcasts