QID 377700
Date Published: 2022-11-29
QID 377700: IBM WebSphere Application Server Simple Object Access Protocol (SOAP) Action Spoofing Vulnerability (6829907)
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing when processing JAX-WS Web Services requests.
Affected Versions:
WebSphere Application Server Version 9.0.0.0 through 9.0.5.13
WebSphere Application Server Version 8.5.0.0 through 8.5.5.22
WebSphere Application Server Version 8.0.0.0 through 8.0.0.15
WebSphere Application Server Version 7.0.0.0 through 7.0.0.45
QID Detection Logic:(Authenticated)
It reads the fix xml file and WebSphereApplicationServer.properties to detect the vulnerable version and also checks for fix pack version.
IBM WebSphere Application Server Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations.
Solution
Upgrade to minimal fix pack levels as required by interim fix and then apply Interim Fix PH49111 or Apply Fix Pack 9.0.5.14 or later for 9.0 versions, 8.5.5.23 or later for 8.5 versions.
Vendor References
- 6829907 -
www.ibm.com/support/pages/node/6829907
CVEs related to QID 377700
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 6829907 |
|