CVE-2008-5257: Input Validation
webseald in WebSEAL 6.0.0.17 in IBM Tivoli Access Manager for e-business allows remote attackers to cause a denial of service (crash or hang) via HTTP requests, as demonstrated by a McAfee vulnerability scan.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5257?
CVE-2008-5257 has been classified as a high severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2008-5257?
To fix CVE-2008-5257, you should upgrade to the latest version of IBM Tivoli Access Manager for e-business that addresses this vulnerability.
What type of attack does CVE-2008-5257 allow?
CVE-2008-5257 allows remote attackers to perform denial of service attacks by sending specially crafted HTTP requests.
Which software is affected by CVE-2008-5257?
CVE-2008-5257 specifically affects IBM Tivoli Access Manager for e-business version 6.0.0.17.
Can CVE-2008-5257 be exploited remotely?
Yes, CVE-2008-5257 can be exploited remotely, allowing attackers to crash or hang the WebSEAL component.