CVE-2002-1153

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/10/2002
Last modified:
03/04/2025

Description

IBM Websphere 4.0.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with long HTTP headers, such as "Host".

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:websphere_application_server:4.0.3:*:*:*:*:*:*:*