CVE-2011-1368

The JavaServer Faces (JSF) application functionality in IBM WebSphere Application Server 8.x before 8.0.0.1 does not properly handle requests, which allows remote attackers to read unspecified files via unknown vectors.

Date published : 2011-10-29

http://www.ibm.com/support/docview.wss?uid=swg1PM45992

http://www-01.ibm.com/support/docview.wss?uid=swg24030916