Remote Code Execution Vulnerability in IBM WebSphere Application Server
CVE-2024-56339

3.7LOW

What is CVE-2024-56339?

A vulnerability exists in the IBM WebSphere Application Server and WebSphere Application Server Liberty, allowing remote attackers to bypass established security restrictions. This is attributed to improper handling of security configurations, posing significant risks to server integrity and data protection. It is crucial for organizations utilizing these platforms to apply the latest patches and review their security configurations to mitigate potential exploitation.

Affected Version(s)

WebSphere Application Server 9.0

WebSphere Application Server Liberty 17.0.0.3 <= 25.0.0.7

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-56339 : Remote Code Execution Vulnerability in IBM WebSphere Application Server