CVE-2009-0897

IBM WebSphere Partner Gateway WPG <6.1.0.1-6.1.1.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

IBM WebSphere Partner Gateway (WPG) 6.1.0 before 6.1.0.1 and 6.1.1 before 6.1.1.1 allows remote authenticated users to obtain sensitive information via vectors related to the "schema DB2 instance id" and the bcgarchive (aka the archiver script).

References (3)

Core 3
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg21366016
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/35136
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/50643

Scores

EPSS 0.0096
EPSS Percentile 58.0%

Details

Status published
Products (2)
ibm/websphere_partner_gateway 6.1.0
ibm/websphere_partner_gateway 6.1.1
Published May 21, 2009
Tracked Since Feb 18, 2026