CVE Database
/

CVE-2010-1650

Back to search

CVE-2010-1650

Published: Apr 30, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

IBM WebSphere Application Server (WAS) 6.0.x before 6.0.2.41, 6.1.x before 6.1.0.31, and 7.0.x before 7.0.0.11, when the -trace option (aka debugging mode) is enabled, executes debugging statements that print string representations of unspecified objects, which allows attackers to obtain sensitive information by reading the trace output.

VendorProductVersions

n/a

n/a

affected
n/a

References

39628
third-party-advisory
x_refsource_SECUNIA
PM12247
vendor-advisory
x_refsource_AIXAPAR
PM06839
vendor-advisory
x_refsource_AIXAPAR
ADV-2010-0994
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now