First published: Sat Oct 29 2011(Updated: )
The JavaServer Faces (JSF) application functionality in IBM WebSphere Application Server 8.x before 8.0.0.1 does not properly handle requests, which allows remote attackers to read unspecified files via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere Application Server Feature Pack for Web Services | =8.0.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1368 has a medium severity rating due to its potential to allow unauthorized file access.
To remediate CVE-2011-1368, upgrade IBM WebSphere Application Server to version 8.0.0.1 or later.
CVE-2011-1368 can allow remote attackers to read sensitive files from the server, leading to data exposure.
CVE-2011-1368 affects IBM WebSphere Application Server version 8.0.0.0 before the patch release.
Yes, CVE-2011-1368 can be exploited remotely by attackers to access restricted files.