CVE-2009-0897
IBM WebSphere Partner Gateway WPG <6.1.0.1-6.1.1.1 - Info Disclosure
Title source: llmDescription
IBM WebSphere Partner Gateway (WPG) 6.1.0 before 6.1.0.1 and 6.1.1 before 6.1.1.1 allows remote authenticated users to obtain sensitive information via vectors related to the "schema DB2 instance id" and the bcgarchive (aka the archiver script).
References (3)
Core 3
Core References
Patch, Vendor Advisory vendor-advisory
x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg21366016
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/35136
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/50643
Scores
EPSS
0.0096
EPSS Percentile
58.0%
Details
Status
published
Products (2)
ibm/websphere_partner_gateway
6.1.0
ibm/websphere_partner_gateway
6.1.1
Published
May 21, 2009
Tracked Since
Feb 18, 2026