IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled, allows malicious users to perform an internal application hashtable login by (1) not providing a password or (2) providing an empty password.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm websphere application server 6.1.0.9 |