Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM WebSphere Service Registry and Repository (WSRR) 7.0.0 before FP1 does not properly implement access control, which allows remote attackers to perform governance actions via unspecified API requests to an EJB interface.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM WSRR权限许可和访问控制漏洞
Vulnerability Description
WebSphere Service Registry and Repository是用于存储、访问和管理信息(通常是指服务元数据)的系统。 IBM WebSphere Service Registry and Repository (WSRR) FP1之前的7.0.0版本没有正确实现访问控制。远程攻击者可以借助向EJB接口的未明API请求执行管理操作。
CVSS Information
N/A
Vulnerability Type
N/A