The SNMP implementation in IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.5 does not properly handle configuration data, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
2015-04-27T12:59:00.093
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.0 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_application_server | 8.5.0.0 | Yes |
Application | ibm | websphere_application_server | 8.5.0.1 | Yes |
Application | ibm | websphere_application_server | 8.5.0.2 | Yes |
Application | ibm | websphere_application_server | 8.5.5.0 | Yes |
Application | ibm | websphere_application_server | 8.5.5.1 | Yes |
Application | ibm | websphere_application_server | 8.5.5.2 | Yes |
Application | ibm | websphere_application_server | 8.5.5.3 | Yes |
Application | ibm | websphere_application_server | 8.5.5.4 | Yes |