CVE-2021-29736: High severity ibm websphere application server feature pack for web services vulnerability
Published Jul 29, 2021
·Updated
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a remote user to gain elevated privileges on the system. IBM X-Force ID: 201300.
Other sources
IBM WebSphere Application Server could allow a remote user to gain elevated privileges on the system.
Affected Software
15 affected components
IBM WebSphere Application Server<=9.0
IBM WebSphere Application Server<=8.5
IBM WebSphere Application Server<=8.0
IBM WebSphere Application Server<=7.0
IBM WebSphere Application Server>=7.0.0.0<=7.0.0.45
IBM WebSphere Application Server>=8.0.0.0<=8.0.0.15
IBM WebSphere Application Server>=8.5.0.0<=8.5.5.20
IBM WebSphere Application Server>=9.0.0.0<=9.0.5.8
HP HP-UX
IBM AIX
IBM i
IBM Z\/os
Linux Linux kernel
Microsoft Windows
Oracle Solaris
Remediation
Patch Available
Event History
Jul 29, 2021
CVE Published
via IBM·12:00 AM
Jul 30, 2021
CVE Published
via MITRE·11:15 AM
Data Sourced
via MITRE·11:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this IBM WebSphere Application Server vulnerability?
The vulnerability ID is CVE-2021-29736.
2
What is the title of this vulnerability?
The title of this vulnerability is 'IBM WebSphere Application Server could allow a remote user to gain elevated privileges on the system.'
3
What is the severity of CVE-2021-29736?
The severity of CVE-2021-29736 is high, with a severity value of 8.8.
4
Which versions of IBM WebSphere Application Server are affected by this vulnerability?
IBM WebSphere Application Server versions 7.0, 8.0, 8.5, and 9.0 are affected by this vulnerability.
5
How can a remote user exploit this vulnerability?
This vulnerability allows a remote user to gain elevated privileges on the system.