CVE-2006-2435

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/05/2006
Last modified:
03/04/2025

Description

Unspecified vulnerability in IBM WebSphere Application Server 5.0.2 and earlier, and 5.1.1 and earlier, has unknown impact and attack vectors related to "Inserting certain script tags in urls [that] may allow unintended execution of scripts."

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:websphere_application_server:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_application_server:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_application_server:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_application_server:5.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_application_server:5.1.1:*:*:*:*:*:*:*