CVE-2010-2644: Medium severity ibm websphere service registry and repository vulnerability
IBM WebSphere Service Registry and Repository (WSRR) 7.0.0 before FP1 does not properly implement access control, which allows remote attackers to perform governance actions via unspecified API requests to an EJB interface.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2644?
CVE-2010-2644 is considered a medium severity vulnerability as it allows remote attackers to perform unauthorized governance actions.
How do I fix CVE-2010-2644?
To fix CVE-2010-2644, apply IBM's fix pack FP1 for the WebSphere Service Registry and Repository version 7.0.0.
What types of attacks can exploit CVE-2010-2644?
CVE-2010-2644 can be exploited by remote attackers to make unauthorized API requests to the EJB interface.
Which versions of IBM WebSphere Service Registry and Repository are affected by CVE-2010-2644?
CVE-2010-2644 affects IBM WebSphere Service Registry and Repository version 7.0.0 before fix pack FP1.
Is CVE-2010-2644 a local or remote vulnerability?
CVE-2010-2644 is a remote vulnerability, allowing attackers to exploit it without local access.