Vulnerabilities > CVE-2012-5955 - Unspecified vulnerability in IBM Http Server and Websphere Application Server
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN ibm
nessus
Summary
Unspecified vulnerability in the IBM HTTP Server component 5.3 in IBM WebSphere Application Server (WAS) for z/OS allows remote attackers to execute arbitrary commands via unknown vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Nessus
NASL family | Web Servers |
NASL id | IBM_ZOS_HTTPD_5_3_0.NASL |
description | According to its banner, the version of IBM HTTP Server on the remote host is version 5.3.0. It is, therefore, potentially affected by an unspecified command execution vulnerability. This issue only affects IBM HTTP Server for z/OS. Note that Nessus did not actually test for this issue, but instead has relied on the version in the server |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 66760 |
published | 2013-06-03 |
reporter | This script is Copyright (C) 2013-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/66760 |
title | IBM HTTP Server for z/OS 5.3.0 Command Execution |
code |
|
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 57010 CVE(CAN) ID: CVE-2012-5955 WebSphere是IBM的集成软件平台。它包含了编写、运行和监视全天候的工业强度的随需应变Web应用程序和跨平台、跨产品解决方案所需要的整个中间件基础设施,如服务器、服务和工具。 IBM WebSphere Application Server for z/OS 5.3及其他版本在HTTP服务器组件5.3版本内存在安全漏洞,可允许远程攻击者执行任意命令。 0 IBM Websphere Application Server 5.x 厂商补丁: IBM --- IBM已经为此发布了一个安全公告(swg21620945)以及相应补丁: swg21620945:Security vulnerability in IBM HTTP Server for z/OS Version 5.3 (PM79239) 链接:http://www-01.ibm.com/support/docview.wss?&uid=swg21620945 |
id | SSV:60521 |
last seen | 2017-11-19 |
modified | 2012-12-21 |
published | 2012-12-21 |
reporter | Root |
title | IBM WebSphere Application Server for z/OS HTTP Server组件任意命令执行漏洞 |