CVE-2010-1650

IBM WebSphere Application Server (WAS) 6.0.x before 6.0.2.41, 6.1.x before 6.1.0.31, and 7.0.x before 7.0.0.11, when the -trace option (aka debugging mode) is enabled, executes debugging statements that print string representations of unspecified objects, which allows attackers to obtain sensitive information by reading the trace output.

Date published : 2010-04-30

http://www-01.ibm.com/support/docview.wss?uid=swg1PM06839

http://www-01.ibm.com/support/docview.wss?uid=swg1PM12247