CVE-2006-4222
Estado: ModificadaMedia (5)—
Multiple unspecified vulnerabilities in IBM WebSphere Application Server before 6.0.2.13 have unspecified vectors and impact, including (1) an "authority problem" in ThreadIdentitySupport as identified by PK25199, and "Potential security exposure" issues as identified by (2) PK22747, (3) PK24334, (4) PK25740, and (5) PK26123.
CVSS
- Versión: 2.0
- Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N
- Puntuación base: 5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 1.55%
- Percentil entre todas las CVEs puntuadas: 74
- Fecha de la puntuación: 7/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- NVD-CWE-Other
Referencias
- http://secunia.com/advisories/21487
- http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876#60213
- http://www.vupen.com/english/advisories/2006/3281
- http://secunia.com/advisories/21487
- http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876#60213
- http://www.vupen.com/english/advisories/2006/3281
JSON original (NVD)
Mostrar
{
"id": "CVE-2006-4222",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 5,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2006-08-18T20:04:00.000",
"references": [
{
"url": "http://secunia.com/advisories/21487",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876#60213",
"tags": [
"Patch"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/3281",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/21487",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www-1.ibm.com/support/docview.wss?rs=180&uid=swg27006876#60213",
"tags": [
"Patch"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2006/3281",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Multiple unspecified vulnerabilities in IBM WebSphere Application Server before 6.0.2.13 have unspecified vectors and impact, including (1) an \"authority problem\" in ThreadIdentitySupport as identified by PK25199, and \"Potential security exposure\" issues as identified by (2) PK22747, (3) PK24334, (4) PK25740, and (5) PK26123."
},
{
"lang": "es",
"value": "Múltiples vulnerabilidades no especificadas en el servidor de aplicaciones IBM WebSphere Application Server anterior a 6.0.2.13 tienen vectores e impacto no especificados, incluyendo (1) un \"problema de autoridad\" en ThreadIdentitySupport como se ha identificado en PK25199, y \"Potenciales problemas de exposición de seguridad\" como identifican (2) PK22747, (3) PK24334, (4) PK25740, y (5) PK26123."
}
],
"lastModified": "2026-06-16T22:28:38.463",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1ABF32A6-E46F-4F34-A683-F9D90AD010DC",
"versionEndIncluding": "6.0.2.11"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "714C405D-1E8F-45C1-8A09-5103F0080C76"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C7F31FD3-8681-4F07-9644-5CC87D512520"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "458BAD79-958E-4665-B1F8-0D46E0C57045"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AC1A723F-D685-4FE5-8938-5682A2D02155"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "9643B593-DADF-4F57-B41E-541C7F554A4C"
},
{
"criteria": "cpe:2.3:a:ibm:websphere_application_server:6.0.2.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "521DB050-3C94-49BF-8666-6EC2C358AA27"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}