CVE-2008-4284
N/A
N/A
Summary
Open redirect vulnerability in the ibm_security_logout servlet in IBM WebSphere Application Server (WAS) 5.1.1.19 and earlier 5.x versions, 6.0.x before 6.0.2.33, and 6.1.x before 6.1.0.23 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the logoutExitPage feature.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www-1.ibm.com/support/docview.wss?uid=swg24021527
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47200
- http://www.securityfocus.com/bid/33700
- http://www-1.ibm.com/support/docview.wss?uid=swg21320242
References
- http://www-1.ibm.com/support/docview.wss?uid=swg24021527
- https://exchange.xforce.ibmcloud.com/vulnerabilities/47200
- http://www.securityfocus.com/bid/33700
- http://www-1.ibm.com/support/docview.wss?uid=swg21320242
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.