Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM WebSphere Application Server (WAS) 8.5 before 8.5.5.6, and WebSphere Virtual Enterprise 7.0 before 7.0.0.6 for WebSphere Application Server (WAS) 7.0 and 8.0, does not properly implement user roles, which allows local users to gain privileges via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM WebSphere Application Server和WebSphere Virtual Enterprise 权限许可和访问控制漏洞
Vulnerability Description
IBM WebSphere Application Server(WAS)和WebSphere Virtual Enterprise(WVE)都是美国IBM公司的产品。WAS是一款应用服务器产品;WVE是一套应用服务器虚拟化解决方案。 IBM WAS和WVE中存在安全漏洞,该漏洞源于程序没有正确实现用户角色。本地攻击者可利用该漏洞获取提升的权限。以下产品及版本受到影响:IBM WAS 8.5版本,WAS 7版本和8版本上的WVE 7.0版本。
CVSS Information
N/A
Vulnerability Type
N/A