VulnerabilityModified
CVE-2005-4834
IBM WebSphere Application Server (WAS) 5.0.2.5 through 5.1.1.3 allows remote attackers to obtain JSP source code and other sensitive information, related to incorrect request processing by the web container.
MEDIUM 5.0EPSS 1.44%
Does this matter?
Lower severity and a low EPSS score (1.44%). Track it; it rarely justifies an emergency change on its own.
Description
IBM WebSphere Application Server (WAS) 5.0.2.5 through 5.1.1.3 allows remote attackers to obtain JSP source code and other sensitive information, related to incorrect request processing by the web container.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.44% probability · 72th percentile
- CISA KEV
- Not listed
- Affected
- ibm/websphere application server
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/24478Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg21243541Patch, Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg24008814Patch, Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg24013840Patch, Vendor Advisory
- http://www.securityfocus.com/bid/22991
- http://www.vupen.com/english/advisories/2007/0970
- http://secunia.com/advisories/24478Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg21243541Patch, Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg24008814Patch, Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg24013840Patch, Vendor Advisory
- http://www.securityfocus.com/bid/22991
- http://www.vupen.com/english/advisories/2007/0970
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.