Home
HIGH: 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H 8.5.0 (semver)
affected
9.0 (semver)
affected
Description
IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication).
Problem types
CWE-94 Improper Control of Generation of Code ('Code Injection')
Product status
9.0 (semver)
References
www.ibm.com/support/pages/node/7274065