← Back to CVE List
CVE-2026-16185NVD
Vulnerability Summary
IBM WebSphere Application Server 9.0, and 8.5 could allow a remote attacker to bypass authentication on an admin console servlet.
CVSS v3.1 Base Metrics — Score 6.4 (MEDIUM)
Attack VectorAdjacent
Attack ComplexityHigh
Privileges RequiredNone
User InteractionNone
ScopeUnchanged
ConfidentialityLow
IntegrityLow
AvailabilityHigh
Affected & Patched Versions
- IBM WebSphere Application Server >= 9.0
- IBM WebSphere Application Server >= 8.5
Not provided by cveorg for this CVE.