IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code execution and denial of service in the WebSphere Web Server Plug-in component. This vulnerability can be exploited when an attacker impersonates the application server and sends crafted responses to the plug-in.
IBM WebSphere Application Server and IBM WebSphere Application Server Liberty are vulnerable to remote code execution and denial of service in the WebSphere Web Server Plug-in component. This vulnerability can be exploited when an attacker impersonates the application server and sends crafted responses to the plug-in.
Why this VPI (explainable, experimental)
VPI breakdown
| Impact | 75.00 |
| Exploitation signal(No additional exploitation signal) | ×1.00 |
| VPI | 75.00 |
VPI formula vpi-v1
This CVE is referenced in a KISA security bulletin (Korean only).