IBM WebSphere Application Server 7.0.0.x <= 7.0.0.45 / 8.0.0.x <= 8.0.0.15 / 8.5.x < 8.5.5.15 Form Login Spoofing Vulnerability (CVE-2018-1695)

medium Nessus Plugin ID 124566

Version 1.8

Mar 13, 2025, 8:06 AM

  • CVSS metrics ("CVSSv3 score" set to 5.6)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L")
  • CVSSv3 score source (changed from "manual" to none)
  • CVSSv3 severity (based on None, severity decreased from "High" to "Medium")
  • Exploit attributes ("Exploit available" set to "False")

Plugin Feed: 202503130806

Version 1.7

Feb 18, 2025, 11:54 PM

  • Plugin metadata (CVSS 3 Change AC:H --> AC:L where needed)

Plugin Feed: 202502182354

Version 1.6

Oct 23, 2024, 3:47 PM

  • Plugin metadata (update thorough_tests attribute)

Plugin Feed: 202410231547

* Changelogs are generally available for changes made after Nov 1, 2022