Search Results (Refine Search)
- CPE Product Version: cpe:/a:ibm:websphere_application_server:7.0.0.9
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2010-1651 |
IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.31 and 7.0.x before 7.0.0.11, when Basic authentication and SIP tracing (aka full trace logging for SIP) are enabled, logs the entirety of all inbound and outbound SIP messages, which allows local users to obtain sensitive information by reading the trace log. Published: May 03, 2010; 9:51:52 AM -0400 |
V3.x:(not available) V2.0: 1.9 LOW |
CVE-2010-1650 |
IBM WebSphere Application Server (WAS) 6.0.x before 6.0.2.41, 6.1.x before 6.1.0.31, and 7.0.x before 7.0.0.11, when the -trace option (aka debugging mode) is enabled, executes debugging statements that print string representations of unspecified objects, which allows attackers to obtain sensitive information by reading the trace output. Published: May 03, 2010; 9:51:52 AM -0400 |
V3.x:(not available) V2.0: 1.9 LOW |