First published: Wed Dec 08 2021(Updated: )
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a denial of service, caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume all available CPU resources. IBM X-Force ID: 211405.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Websphere Application Server | <=9.0 | |
Ibm Websphere Application Server | <=8.5 | |
Ibm Websphere Application Server | <=8.0 | |
Ibm Websphere Application Server | <=7.0 | |
Ibm Websphere Application Server | =7.0 | |
Ibm Websphere Application Server | =8.0 | |
Ibm Websphere Application Server | =8.5 | |
Ibm Websphere Application Server | =9.0 | |
HP HP-UX | ||
IBM AIX | ||
IBM i | ||
Ibm Z\/os | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this IBM WebSphere Application Server vulnerability is CVE-2021-38951.
The severity of CVE-2021-38951 is high with a severity value of 7.5.
CVE-2021-38951 can cause a denial of service on IBM WebSphere Application Server by consuming all available CPU resources.
IBM WebSphere Application Server versions 7.0, 8.0, 8.5, and 9.0 are affected by CVE-2021-38951.
To fix CVE-2021-38951 on IBM WebSphere Application Server, apply the necessary patch or update provided by IBM.