Vulnerabilities > CVE-2007-3960 - Remote Security vulnerability in Websphere Application Server

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
ibm
critical
nessus

Summary

Multiple unspecified vulnerabilities in IBM WebSphere Application Server (WAS) before Fix Pack 21 (6.0.2.21) have unknown impact and attack vectors, aka (1) PK33799, or (2) a "Potential security exposure" in the Samples component (PK40213).

Vulnerable Configurations

Part Description Count
Application
Ibm
96

Nessus

NASL familyWeb Servers
NASL idWEBSPHERE_6_0_2_21.NASL
descriptionIBM WebSphere Application Server 6.0.x before Fix Pack 21 appears to be running on the remote host. Such versions are reportedly affected by multiple vulnerabilities. - The web container sends response data intended for a different request in certain circumstances after a closed connection error. (PK41446) - Multiple unspecified vulnerabilities. (PK33799, PK40213)
last seen2020-06-01
modified2020-06-02
plugin id45417
published2010-04-05
reporterThis script is Copyright (C) 2010-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/45417
titleIBM WebSphere Application Server 6.0 < 6.0.2.21 Multiple Vulnerabilities