CVE Database
/

CVE-2015-1885

Back to search

CVE-2015-1885

Published: Apr 26, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

WebSphereOauth20SP.ear in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.39, 8.0 before 8.0.0.11, 8.5 Liberty Profile before 8.5.5.5, and 8.5 Full Profile before 8.5.5.6, when the OAuth grant type requires sending a password, allows remote attackers to gain privileges via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

PI33202
vendor-advisory
x_refsource_AIXAPAR
1032190
vdb-entry
x_refsource_SECTRACK
74219
vdb-entry
x_refsource_BID
PI36211
vendor-advisory
x_refsource_AIXAPAR

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now