CVE-2010-0770IBM Websphere Application Server vulnerability

CWE-39927 documents4 sources
Severity
4.0MEDIUMNVD
EPSS
0.5%
top 33.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 1
Latest updateMay 2

Description

IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.41, 6.1 before 6.1.0.31, and 7.0 before 7.0.0.9 allows remote authenticated users to cause a denial of service (ORB ListenerThread hang) by aborting an SSL handshake.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 8.0 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-fp84-6pq7-h5cw: IBM WebSphere Application Server (WAS) 62022-05-02
CVEList
CVE-2010-0770: IBM WebSphere Application Server (WAS) 62010-04-01

💬Community

15
Bugzilla
CVE-2010-4174 RHDS/389: information disclosure in audit logs2010-11-16
Bugzilla
CVE-2010-3560 JDK unspecified vulnerability in Networking component2010-10-13
Bugzilla
CVE-2010-3572 JDK unspecified vulnerability in Sound component2010-10-13
Bugzilla
CVE-2010-3563 OpenJDK: unspecified vulnerability in Deployment component2010-10-13
Bugzilla
CVE-2010-3556 JDK unspecified vulnerability in 2D component2010-10-13
CVE-2010-0770 — IBM vulnerability | cvebase