CVE Database
/

CVE-2010-3186

Back to search

CVE-2010-3186

Published: Aug 30, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

IBM WebSphere Application Server (WAS) 7.x before 7.0.0.13, and WebSphere Application Server Feature Pack for Web Services 6.1.0.9 through 6.1.0.32, when a JAX-WS application is used, does not properly handle an IncludeTimestamp setting in the WS-Security policy, which has unspecified impact and remote attack vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

PM08360
vendor-advisory
x_refsource_AIXAPAR
67570
vdb-entry
x_refsource_OSVDB
PM16014
vendor-advisory
x_refsource_AIXAPAR
41173
third-party-advisory
x_refsource_SECUNIA
ADV-2010-2215
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now