First published: Mon Apr 27 2015(Updated: )
WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, 8.5 Liberty Profile before 8.5.5.5, and 8.5 Full Profile before 8.5.5.6, when the OAuth grant type requires sending a password, allows remote attackers to gain privileges via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Websphere Application Server | =7.0 | |
Ibm Websphere Application Server | =7.0.0.1 | |
Ibm Websphere Application Server | =7.0.0.2 | |
Ibm Websphere Application Server | =7.0.0.3 | |
Ibm Websphere Application Server | =7.0.0.10 | |
Ibm Websphere Application Server | =7.0.0.11 | |
Ibm Websphere Application Server | =7.0.0.12 | |
Ibm Websphere Application Server | =7.0.0.13 | |
Ibm Websphere Application Server | =7.0.0.14 | |
Ibm Websphere Application Server | =7.0.0.15 | |
Ibm Websphere Application Server | =7.0.0.16 | |
Ibm Websphere Application Server | =7.0.0.17 | |
Ibm Websphere Application Server | =7.0.0.18 | |
Ibm Websphere Application Server | =7.0.0.19 | |
Ibm Websphere Application Server | =7.0.0.21 | |
Ibm Websphere Application Server | =7.0.0.22 | |
Ibm Websphere Application Server | =7.0.0.23 | |
Ibm Websphere Application Server | =7.0.0.24 | |
Ibm Websphere Application Server | =7.0.0.25 | |
Ibm Websphere Application Server | =7.0.0.27 | |
Ibm Websphere Application Server | =7.0.0.29 | |
Ibm Websphere Application Server | =7.0.0.31 | |
Ibm Websphere Application Server | =7.0.0.32 | |
Ibm Websphere Application Server | =7.0.0.33 | |
Ibm Websphere Application Server | =7.0.0.34 | |
Ibm Websphere Application Server | =7.0.0.35 | |
Ibm Websphere Application Server | =7.0.0.36 | |
Ibm Websphere Application Server | =7.0.0.37 | |
Ibm Websphere Application Server | =7.0.0.38 | |
Ibm Websphere Application Server | =8.5.0.0 | |
Ibm Websphere Application Server | =8.5.0.1 | |
Ibm Websphere Application Server | =8.5.0.2 | |
Ibm Websphere Application Server | =8.5.5.0 | |
Ibm Websphere Application Server | =8.5.5.1 | |
Ibm Websphere Application Server | =8.5.5.2 | |
Ibm Websphere Application Server | =8.5.5.3 | |
Ibm Websphere Application Server | =8.5.5.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.