Vulnerabilities > CVE-2018-1901 - Unspecified vulnerability in IBM Websphere Application Server
Attack vector
NETWORK Attack complexity
LOW Privileges required
SINGLE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to temporarily gain elevated privileges on the system, caused by incorrect cached value being used. IBM X-Force ID: 152530.
Vulnerable Configurations
Nessus
NASL family | Web Servers |
NASL id | WEBSPHERE_CVE-2018-1901.NASL |
description | The IBM WebSphere Application Server running on the remote host is version 8.5.x prior to 8.5.5.15, or 9.0.0.x prior to 9.0.0.10. It is, therefore, affected by a privilege escalation vulnerability. This could allow a remote attacker to temporarily gain elevated privileges on the system, caused by incorrect cached value being used |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 133273 |
published | 2020-01-28 |
reporter | This script is Copyright (C) 2020 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/133273 |
title | IBM WebSphere Application Server 8.5.x < 8.5.5.15 / 9.0.0.x < 9.0.0.10 Privilege Escalation (CVE-2018-1901) |