IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a privilege escalation vulnerability when using the SAML Web Inbound Trust Association Interceptor (TAI). IBM X-Force ID: 202006.
2021-06-11T15:15:11.227
2024-11-21T06:01:44.647
Modified
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_application_server | < 7.0.0.45 | Yes |
Application | ibm | websphere_application_server | < 8.0.0.15 | Yes |
Application | ibm | websphere_application_server | < 8.5.5.20 | Yes |
Application | ibm | websphere_application_server | < 9.0.5.8 | Yes |
Operating System | hp | hp-ux | - | No |
Operating System | ibm | aix | - | No |
Operating System | ibm | i | - | No |
Operating System | ibm | z\/os | - | No |
Operating System | linux | linux_kernel | - | No |
Operating System | microsoft | windows | - | No |
Operating System | oracle | solaris | - | No |