CVE-2009-0906
Published Aug 13, 2009
Last updated 7 years ago
Overview
- Description
- The Service Component Architecture (SCA) feature pack for IBM WebSphere Application Server (WAS) SCA 1.0 before 1.0.0.3 allows remote authenticated users to bypass intended authentication.transport access restrictions and obtain unspecified access via unknown vectors.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.5
- Impact score
- 6.4
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-287
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:websphere_application_server:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BDFDC724-24B4-4FC2-9018-C915B4275790" }, { "criteria": "cpe:2.3:a:ibm:websphere_application_server:1.0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "538B9F5A-5160-430B-8028-940DEE765D3C" } ], "operator": "OR" } ] } ]