Description
IBM WebSphere Application Server Liberty 21.0.0.10 through 21.0.0.12 could provide weaker than expected security. A remote attacker could exploit this weakness to obtain sensitive information and gain unauthorized access to JAX-WS applications. IBM X-Force ID: 217224.
CVSS breakdown
CVSS 3.0
Confidentiality
Low
Availability
None
Attack Complexity
High
Privileges Required
None
Integrity
Low
Scope
Unchanged
User Interaction
None
Attack Vector
Network
RC
Changed
RL
O
E
Unchanged
Affected products
- ibm / websphere_application_server___liberty21.0.0.10 – 21.0.0.10
- ibm / websphere_application_server___liberty21.0.0.12 – 21.0.0.12