CVE-2009-0906Improper Authentication in IBM Websphere Application Server

Severity
6.5MEDIUMNVD
EPSS
0.3%
top 43.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 13
Latest updateMay 2

Description

The Service Component Architecture (SCA) feature pack for IBM WebSphere Application Server (WAS) SCA 1.0 before 1.0.0.3 allows remote authenticated users to bypass intended authentication.transport access restrictions and obtain unspecified access via unknown vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 8.0 | Impact: 6.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3368-gjw8-34fq: The Service Component Architecture (SCA) feature pack for IBM WebSphere Application Server (WAS) SCA 12022-05-02
CVEList
CVE-2009-0906: The Service Component Architecture (SCA) feature pack for IBM WebSphere Application Server (WAS) SCA 12009-08-13
CVE-2009-0906 — Improper Authentication in IBM | cvebase