CVE-2010-0776 Information

Description

The Web Container in IBM WebSphere Application Server (WAS) 6.0 before 6.0.2.43 6.1 before 6.1.0.31 and 7.0 before 7.0.0.11 does not properly handle chunked transfer encoding during a call to response.sendRedirect which allows remote attackers to cause a denial of service via a GET request.

Reference

http://www-01.ibm.com/support/docview.wss?uid=swg1PM08760 https://exchange.xforce.ibmcloud.com/vulnerabilities/58556

Share on: