Loading...
Loading...
The JAX-RPC WS-Security runtime in the Web Services Security component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.23 and 7.0 before 7.0.0.3, when APAR PK41002 is installed, does not properly validate UsernameToken objects, which has unknown impact and attack vectors.
March 31, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-1172
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.