CVE-2012-5955
published 2012-12-20CVE-2012-5955: Unspecified vulnerability in the IBM HTTP Server component 5.3 in IBM WebSphere Application Server (WAS) for z/OS allows remote attackers to execute arbitrary…
PriorityP353critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
4.40%
90.2th percentile
Unspecified vulnerability in the IBM HTTP Server component 5.3 in IBM WebSphere Application Server (WAS) for z/OS allows remote attackers to execute arbitrary commands via unknown vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | http_server | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Securelist
Mainframes: structure and features of penetration testing
blogs_securelist·2024-08-20
Mainframes: structure and features of penetration testing
Table of Contents
- Overview of z/OS
- Reconnaissance
- Initial access
- Execution
- Privilege escalation
- Collection
- Exfiltration
- Conclusion
Authors
- Denis Stepanov
- Alexander Korotin
Information technology is developing at a rapid pace, with completely new areas emerging, such as DevOps and DevSecOps – and we’re striving to keep up. However, in some projects, you may encounter systems built on rather outdated principles. Such systems must be approached with care, since a single mistake can lead to data loss and malfunctions. To some extent, this is true for today’s systems too, but for systems with a rich history, the risks are significantly higher.
Mainframes are just such an example of old architecture. These software-hardware solutions rely on principles developed in the
Securelist
Approach to mainframe penetration testing on z/OS
blogs_securelist·2024-08-20·CVSS 7.2
[HIGH] Approach to mainframe penetration testing on z/OS
Table of Contents
Overview of z/OS
Reconnaissance
Network reconnaissance
User enumeration
Initial access
Password cracking
Execution
Abuse of Job Entry System
Executing commands via Job Entry System and the FTP server
Network Job Entry
Interacting with the mainframe through VTAM
CICS
Resource managers
Time Sharing Options/Extensions
Interactive System Productivity Facility
Using standard services
Web applications
Privilege escalation
Overview
Configuration errors related to dataset access control
Authorized Program Facility
Enumeration
Exploitation
WARNING mode
Obtaining a list of datasets and resources in WARNING mode
Configuration errors related to resource class access control
Overview
Resource class TSOAUTH
TESTAUTH
Enumeration
Exploitation
Resource clas
Trendmicro
Do Online Mainframes Compomise Business Processes?
blogs_trendmicro·2017-07-13
Do Online Mainframes Compomise Business Processes?
# Do Online Mainframes Compomise Business Processes?
Exposing a mainframe online, even unintentionally, can be detrimental to the security not only of the company’s crown jewels, but also their customers. This is what we found using data from Shodan, a search engine for internet-connected devices.
By: Roel Reyes, Philippe Lin, David Sancho, Morton Swimmer
2017/07/13
Read time: ( words)
Save to Folio
Legacy mainframes are still used by enterprises to handle big data transactions across a range of industries, from financial institutions, telecoms, and internet service providers (ISPs) to airlines and government agencies.
Why are they still in use? As the saying goes: “if it ain’t broke, don’t fix it”. But what if they’re not necessarily “broken”—but unsecure? Exposing a mainframe onlin
2012-12-20
Published