Versions
6.0.2.11
6.0.2.2
5.1
Not
8.5, 8.5.5
7.0.0.6
5.0.0
6.1.0.2
5.3
8.0.0.0
6.1.0.21
7.0.0.2
3.52
6.1.0.29
1.0.1.1
6.1
6.1.0.13
6.1.0.31
6.1.0.14
6.1.0.6
5.1.0.4
6.1.0.3
6.0.0.1
7.0.0.7
3.5.2
6.1.3
3.0.2.1
6.0.2.10
3.0.2.3
6.0.1.17
5.0.2.8
3.0.2.4
5.1.1.16
8.5.5
6.0.1.13
5.1.0.2
6.1.0.41
6.1.6
6.1.0.23
1.0.1.2
6.1.0.16
8.0
5.0.2.12
5.1.1.9
5.0.2.2
6.0.2.28
6.1.0.9
6.1.0.33
6.1.7
8.0.0.1
6.0.2.23
5.1.1.5
5.0.2.14
6.0.2.37
5.1.1.11
6.0.2.12
3.5.3
6.1.0.11
6.1.0.0
5.0.2.4
5.0.2.11
6.0.0.3
3.0.0.4
6.1.0.22
5.1.1.13
5.0.1
5.0.2.9
5.1.1.8
5.0.2.10
3.0.2
6.0.2.16
8.5
6.1.0.17
5.0.2
6.1.0.8
5.1.1.15
6.10.17
6.1.0.5
9.0
6.0.2.21
6.0.2.9
3.5
5.1.1.4
6.0.2.31
6.0.2.27
2.0
6.0.2.24
7.0.0.9
6.0.1.3
6.1.0.19
6.0.2.13
5.0.2.1
7.0.0.8
6.0.2.33
7.0.0.11
1.1.0.2
6.0.2.14
5.0.2.7
5.1.1.17
6.0.1.11
5.0.2.3
5.1.1.10
7.0.0.3
7.0.0.4
6.1.0.37
6.0.1.2
6.0.2.39
Applicable
5.1.1.3
6.1.0.7
1.0.1
6.0.2.30
5.1.1.18
7.0.0.1
6.0.1.1
6.0.2.5
4.0.2
7.0.0.13
6.0.1.5
5.1.1.2
5.1.0.5
6.1.0.15
6.0.2.4
7.1
2.1
7.2
4.0.3
6.0.2.35
6.0.2.18
6.1.0.25
6.0.2
5.1.1.6
5.0
7.0.0
6.1.0.39
4.0.4
6.1.0.26
6.1.0.35
7.0
6.1W
6.0.2.19
6.0.2.15
7.0.0.17
6.0.2.6
6.0.2.32
7.0.0.5
3.5.1
7.0.0.19
3.0
6.0.2.8
5.0.2.6
7.0.0.21
5.1.1.7
1.1
6.0.2.22
6.1.14
6.0.1.7
3.0.0.3
5.0.2.5
6.1.0.10
1.0.0.1
6.0
6.0.2.25
6.0.2.3
6.1.0.4
3.0.21
6.1.0.12
1.1.0.1
3.0.2.2
6.0.1.15
5.0.2.16
9.0.0.0
6.0.0.2
6.0.2.20
6.0.2.29
6.0.2.26
unspecified
6.1.0.18
6.1.0
5.0.2.13
6.0.2.1
6.0.2.7
7.0.0.23
5.1.0.3
1.0
6.1.0.24
6.0.1
5.0.2.15
6.1.0.20
7.0.0.15
6.0.1.9
5.1.1.14
5.1.0.1
6.1.5
6.0.2.17
4.0.1
6.1.0.1
5.1.1.12
5.1.1.1
6.1.1
6.1.13
5.1.1
6.1.0.27
8.0.0
Recent CVEs
CVE-2017-1137
IBM WebSphere Application Server 8.0 and 8.5.5 could provide weaker than expected security. A remote attacker could exploit this weakness to obtain sensitive information and gain unauthorized access to the admin console. IBM X-Force ID: 121549.
CVE-2017-1151
IBM WebSphere Application Server 8.0, 8.5, 8.5.5, and 9.0 using OpenID Connect (OIDC) configured with a Trust Association Interceptor (TAI) could allow a user to gain elevated privileges on the system. IBM Reference #: 1999293.
CVE-2017-1121
IBM WebSphere Application Server 7.0, 8.0, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1997743
CVE-2016-8919
IBM WebSphere Application Server may be vulnerable to a denial of service, caused by allowing serialized objects from untrusted sources to run and cause the consumption of resources.