Required CVE Record Information
Description
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 5.1 and 6.0.2 before 6.0.2.33 on z/OS, when CSIv2 Identity Assertion is enabled and Enterprise JavaBeans (EJB) interaction occurs between a WAS 6.1 instance and a WAS pre-6.1 instance, allows local users to have an unknown impact via vectors related to (1) use of the wrong subject and (2) multiple CBIND checks.
References 4 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- http://www-01.ibm.com/support/docview.wss?uid=swg27006876 x_transferred
- securityfocus.com: 33884 vdb-entryx_transferred
- www-1.ibm.com: PK71143 vendor-advisoryx_transferred
- exchange.xforce.ibmcloud.com: websphere-zos-csiv2-unspecified(48886) vdb-entryx_transferred