CVE-2008-3235: Critical severity ibm websphere application server feature pack for web services vulnerability
Published Jul 21, 2008
·Updated
Unspecified vulnerability in the PropFilePasswordEncoder utility in the Security component in IBM WebSphere Application Server (WAS) 5.1 before 5.1.1.19 has unknown impact and attack vectors.
Affected Software
20 affected components
IBM WebSphere Application Server Feature Pack for Web Services=5.1.0
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.1
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.2
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.3
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.4
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.5
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.6
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.7
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.8
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.9
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.10
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.11
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.12
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.13
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.14
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.15
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.16
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.17
IBM WebSphere Application Server Feature Pack for Web Services=5.1.1.18
Event History
Jul 21, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3235?
The severity of CVE-2008-3235 is currently unspecified, with unknown impact and attack vectors.
2
Which versions of IBM WebSphere Application Server are affected by CVE-2008-3235?
CVE-2008-3235 affects IBM WebSphere Application Server versions 5.1.0 through 5.1.1.18.
3
How do I fix CVE-2008-3235?
To fix CVE-2008-3235, you should upgrade to a version of IBM WebSphere Application Server that is 5.1.1.19 or later.
4
Are there any known exploits for CVE-2008-3235?
As of now, there are no publicly disclosed exploits for CVE-2008-3235.
5
What is the nature of the vulnerability in CVE-2008-3235?
CVE-2008-3235 is an unspecified vulnerability in the PropFilePasswordEncoder utility within the Security component of IBM WebSphere Application Server.