AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1321

MEDIUM · CVSS 6.5 EPSS 0.97%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-03-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-1321
Severity
MEDIUM
CVSS
6.5
EPSS
0.97%

Original NVD Description

The AuthCache purge implementation in the Security component in IBM WebSphere Application Server (WAS) 6.1.0.x before 6.1.0.37 and 7.x before 7.0.0.15 does not purge a user from the PlatformCredential cache, which might allow remote authenticated users to gain privileges by leveraging a group membership specified in an old RACF Object (aka RACO).