CVE-2008-3423: High severity ibm websphere portal vulnerability
Published Aug 4, 2008
·Updated
IBM WebSphere Portal 5.1 through 6.1.0.0 allows remote attackers to bypass authentication and obtain administrative access via unspecified vectors.
Affected Software
11 affected components
IBM WebSphere Portal=5.1.0.3
IBM WebSphere Portal=6.0.1.3
IBM WebSphere Portal=5.1.0.2
IBM WebSphere Portal=6.0.1.1
IBM WebSphere Portal=6.0.0.0
IBM WebSphere Portal=5.1.0.4
IBM WebSphere Portal=5.1.0.0
IBM WebSphere Portal=5.1.0.1
IBM WebSphere Portal=6.1.0.0
IBM WebSphere Portal=5.1.0.5
IBM WebSphere Portal=6.0.0.1
Remediation
Patch Available
Event History
Aug 4, 2008
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3423?
CVE-2008-3423 is considered a critical vulnerability due to its potential to allow remote attackers to bypass authentication.
2
How do I fix CVE-2008-3423?
To fix CVE-2008-3423, update the IBM WebSphere Portal to the latest patch level provided by IBM.
3
Which versions of IBM WebSphere Portal are affected by CVE-2008-3423?
CVE-2008-3423 affects IBM WebSphere Portal versions 5.1 through 6.1.0.0.
4
Can CVE-2008-3423 lead to unauthorized access?
Yes, CVE-2008-3423 can enable remote attackers to obtain administrative access without proper authentication.
5
Is CVE-2008-3423 exploit-related to specific vectors?
CVE-2008-3423 involves unspecified vectors that facilitate the authentication bypass.