CVE-2006-4137
Summary
| CVE | CVE-2006-4137 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-14 23:04:00 UTC |
| Updated | 2011-03-08 02:40:00 UTC |
| Description | IBM WebSphere Application Server before 6.1.0.1 allows attackers to obtain sensitive information via unspecified vectors related to (1) the log file, (2) "script generated syntax on wsadmin command line," and (3) traces. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Websphere Application Server | 6.0 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.3 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.1.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.3 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.4 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.5 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.6 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.7 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.9 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.1.0.0 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.0.3 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.1.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.1 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.2 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.3 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.4 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.5 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.6 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.7 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.0.2.9 | All | All | All |
| Application | Ibm | Websphere Application Server | 6.1.0.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM Fix list for IBM WebSphere Application Server V6.1 - United States | CONFIRM | www-1.ibm.com | Patch |
| IBM WebSphere Application Server 6.1.0 Multiple Vulnerabilities | BID | www.securityfocus.com | Patch |
| Search results | AIXAPAR | www-1.ibm.com | Patch |
| Search results | AIXAPAR | www-1.ibm.com | Patch |
| IBM WebSphere Application Server Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| Search results | AIXAPAR | www-1.ibm.com | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.