CVE

Id
37391  
CVE No.
CVE-2008-7274  
Status
Candidate  
Description
IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled, allows attackers to perform an internal application hashtable login by (1) not providing a password or (2) providing an empty password.  
Phase
Assigned (20110214)  
Votes
None (candidate not yet proposed)  
Comments