QID 376852
Date Published: 2022-11-01
QID 376852: IBM WebSphere Application Server Liberty Information Disclosure Vulnerability (6541530)
IBM WebSphere Application Server Liberty is vulnerable to an Information Disclosure.
Affected Versions:
WebSphere Application Server Liberty Version 21.0.0.10 - 21.0.0.12
QID Detection Logic:(Authenticated)
It reads the fix xml file and WebSphereApplicationServer.properties to detect the vulnerable version. and it also checks for fixpack version.
A remote attacker could exploit this weakness to obtain sensitive information and gain unauthorized access to JAX-WS applications.
Solution
Upgrade to minimal fix pack levels as required by interim fix and then apply Interim Fix PH42074 or Apply Fix Pack 22.0.0.1 or later.
Vendor References
- 6541530 -
www.ibm.com/support/pages/node/6541530
CVEs related to QID 376852
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 6541530 |
|