CVE-2012-2170

Publication date

2012-06-20 10:00:00

Family

ibm

State

PUBLISHED

Description

The Application Snoop Servlet in IBM WebSphere Application Server 7.0 before 7.0.0.23 does not properly restrict access, which allows remote attackers to obtain sensitive client and request information via a direct request.