CVE-2009-2089: Low severity IBM WebSphere Application Server Feature Pack for Web Services vulnerability
The Migration component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.25 and 7.0 before 7.0.0.5, when tracing is enabled and a 6.1 to 7.0 migration has occurred, allows remote authenticated users to obtain sensitive information by reading a Migration Trace file.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2089?
CVE-2009-2089 is considered a moderate severity vulnerability.
How do I fix CVE-2009-2089?
To fix CVE-2009-2089, you should upgrade your IBM WebSphere Application Server to the latest version that includes the patch.
What versions of IBM WebSphere Application Server are affected by CVE-2009-2089?
CVE-2009-2089 affects IBM WebSphere Application Server versions 6.1 before 6.1.0.25 and 7.0 before 7.0.0.5.
What type of information can be accessed due to CVE-2009-2089?
Due to CVE-2009-2089, remote authenticated users can access sensitive information contained in the Migration Trace file.
Is CVE-2009-2089 a local or remote vulnerability?
CVE-2009-2089 is a remote vulnerability as it allows exploitation by authenticated users from a remote location.