Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2014-0859

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2014-0859
Last Modified 15 May 2015 09:59:44
Published 01 May 2014 01:29:56
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2014-0859

Summary

The web-server plugin in IBM WebSphere Application Server (WAS) 7.x before 7.0.0.33, 8.x before 8.0.0.9, and 8.5.x before 8.5.5.2, when POST retries are enabled, allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.

Vulnerable Systems

Application

  • Ibm Websphere Application Server 7.0

  • Ibm Websphere Application Server 7.0.0.1

  • Ibm Websphere Application Server 7.0.0.10

  • Ibm Websphere Application Server 7.0.0.11

  • Ibm Websphere Application Server 7.0.0.12

  • Ibm Websphere Application Server 7.0.0.13

  • Ibm Websphere Application Server 7.0.0.14

  • Ibm Websphere Application Server 7.0.0.15

  • Ibm Websphere Application Server 7.0.0.16

  • Ibm Websphere Application Server 7.0.0.17

  • Ibm Websphere Application Server 7.0.0.18

  • Ibm Websphere Application Server 7.0.0.19

  • Ibm Websphere Application Server 7.0.0.2

  • Ibm Websphere Application Server 7.0.0.21

  • Ibm Websphere Application Server 7.0.0.22

  • Ibm Websphere Application Server 7.0.0.23

  • Ibm Websphere Application Server 7.0.0.24

  • Ibm Websphere Application Server 7.0.0.25

  • Ibm Websphere Application Server 7.0.0.27

  • Ibm Websphere Application Server 7.0.0.29

  • Ibm Websphere Application Server 7.0.0.3

  • Ibm Websphere Application Server 7.0.0.31

  • Ibm Websphere Application Server 7.0.0.4

  • Ibm Websphere Application Server 7.0.0.5

  • Ibm Websphere Application Server 7.0.0.6

  • Ibm Websphere Application Server 7.0.0.7

  • Ibm Websphere Application Server 7.0.0.8

  • Ibm Websphere Application Server 7.0.0.9

  • Ibm Websphere Application Server 8.0.0.0

  • Ibm Websphere Application Server 8.0.0.1

  • Ibm Websphere Application Server 8.0.0.2

  • Ibm Websphere Application Server 8.0.0.3

  • Ibm Websphere Application Server 8.0.0.4

  • Ibm Websphere Application Server 8.0.0.5

  • Ibm Websphere Application Server 8.0.0.6

  • Ibm Websphere Application Server 8.0.0.7

  • Ibm Websphere Application Server 8.0.0.8

  • Ibm Websphere Application Server 8.5.0.0

  • Ibm Websphere Application Server 8.5.0.1

  • Ibm Websphere Application Server 8.5.0.2

  • Ibm Websphere Application Server 8.5.5.0

  • Ibm Websphere Application Server 8.5.5.1


References

XF - ibm-was-cve20140859-retry(90879)

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg21669554

AIXAPAR - PI08892

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg21676092

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg21676091


Last Updated: 27 May 2016 11:05:10