CVE-2014-3022
IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.33, 8.0.x before 8.0.0.9, and 8.5.x before 8.5.5.3 allows remote attackers to obtain sensitive information via a crafted URL that triggers an error condition.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0065 (0.6%)
Percentil: 70.9%
EPSS: 2026-05-06
Afecta
ibm:websphere_application_serverDescripción técnica
IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.33, 8.0.x before 8.0.0.9, and 8.5.x before 8.5.5.3 allows remote attackers to obtain sensitive information via a crafted URL that triggers an error condition.
Publicada: 22/8/2014, 1:55:07
Última modificación: 6/5/2026, 22:30:45
Referencias
- http://www-01.ibm.com/support/docview.wss?uid=swg1PI09594
- http://www-01.ibm.com/support/docview.wss?uid=swg21676091
- http://www-01.ibm.com/support/docview.wss?uid=swg21676092
- http://www-01.ibm.com/support/docview.wss?uid=swg21681249
- http://www.securityfocus.com/bid/68211
- https://exchange.xforce.ibmcloud.com/vulnerabilities/93060
- http://www-01.ibm.com/support/docview.wss?uid=swg1PI09594
- http://www-01.ibm.com/support/docview.wss?uid=swg21676091