CVE-2008-4111

IBM WebSphere Application Server <6.0.2.31/6.1.0.19 Web Container - FileServing Vulnerability

Title source: manual
STIX 2.1

Description

Unspecified vulnerability in Servlet Engine/Web Container in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.31 and 6.1 before 6.1.0.19, when the FileServing feature is enabled, has unknown impact and attack vectors.

References (10)

Core 10
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2566
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45122
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2871
Various Sources vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=swg1PK64302
Various Sources x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg27006876
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31186
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/32296
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31839
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31892

Scores

EPSS 0.0226
EPSS Percentile 81.1%

Details

Status published
Products (21)
ibm/websphere_application_server 6.1
ibm/websphere_application_server 6.1.0
ibm/websphere_application_server 6.1.0.0
ibm/websphere_application_server 6.1.0.1
ibm/websphere_application_server 6.1.0.2
ibm/websphere_application_server 6.1.0.3
ibm/websphere_application_server 6.1.0.4
ibm/websphere_application_server 6.1.0.5
ibm/websphere_application_server 6.1.0.6
ibm/websphere_application_server 6.1.0.7
... and 11 more
Published Sep 16, 2008
Tracked Since Feb 18, 2026