IBM WebSphere Application Server (WAS) 6.1 through 6.1.0.24 and 7.0 through 7.0.0.4, IBM WebSphere Portal Server 5.1 through 6.0, and IBM Integrated Solutions Console (ISC) 6.0.1 do not properly set the IsSecurityEnabled security flag during migration of WebSphere Member Manager (WMM) to Virtual Member Manager (VMM) and a Federated Repository, which allows attackers to obtain sensitive information from repositories via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-06-03T16:33:00
Updated: 2024-08-07T04:48:52.698Z
Reserved: 2009-03-14T00:00:00
Link: CVE-2009-0899
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-06-03T17:00:00.577
Modified: 2024-11-21T01:01:10.883
Link: CVE-2009-0899
Redhat
No data.