CVE-2015-4947: Buffer Overflow
Stack-based buffer overflow in the Administration Server in IBM HTTP Server 6.1.0.x through 6.1.0.47, 7.0.0.x before 7.0.0.39, 8.0.0.x before 8.0.0.12, and 8.5.x before 8.5.5.7, as used in WebSphere Application Server and other products, allows remote authenticated users to execute arbitrary code via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4947?
CVE-2015-4947 has been classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2015-4947?
The recommended fix for CVE-2015-4947 is to apply the latest security patches provided by IBM for the affected versions of IBM HTTP Server.
Who is affected by CVE-2015-4947?
CVE-2015-4947 affects users of IBM HTTP Server versions 6.1.0.x through 6.1.0.47, 7.0.0.x before 7.0.0.39, 8.0.0.x before 8.0.0.12, and 8.5.x before 8.5.5.7.
What types of attacks can be executed using CVE-2015-4947?
CVE-2015-4947 allows remote authenticated users to execute arbitrary code, potentially leading to full system compromise.
Is CVE-2015-4947 related to any specific IBM products?
Yes, CVE-2015-4947 is associated with the IBM HTTP Server and is used in various products including WebSphere Application Server.