IBM WebSphere Application Server V5.0.2.8

Known vulnerabilities detected

Our automated heuristics have identified vulnerabilities that may be associated with this certificate. See the CVEs section for details.

CSV information

Status archived
Valid from 02.12.2004
Valid until 06.09.2012
Scheme 🇺🇸 US
Manufacturer IBM Corporation
Category Databases
Security level EAL2+, ALC_FLR.1

Heuristics summary

Certificate ID: CCEVS-VR-0082-2004

Certificate

certificate file processing did not finish successfully.
Download pdf: ERROR
Convert pdf to text: ERROR
Extract keywords: ERROR

Certification report

Extracted keywords

Vendor
Microsoft

Security level
EAL 2, EAL 1, EAL 4, EAL2, EAL 2 augmented
Security Assurance Requirements (SAR)
ALC_FLR.1, ATE_FUN, ATE_COV
Certificates
CCEVS-VR-04-0082

File metadata

Title Validation Report
Author Santosh Chokhani
Creation date D:20041213113741-05'00'
Modification date D:20041213114215-05'00'
Pages 13
Creator Acrobat PDFMaker 5.0 for Word
Producer Acrobat Distiller 5.0.5 (Windows)

Frontpage

Certificate ID CCEVS-VR-04-0082
Certified item IBM WebSphere Application Server
Certification lab US NIAP

Security target

Extracted keywords

Protocols
SSL

Vendor
Microsoft

Security level
EAL2, EAL2 augmented
Claims
O.ACCESS, O.IDENTIFY, O.MANAGE, O.ADMIN, O.APP, O.ATTR, O.PROTECT, O.RECOVER, T.ACCESS_RES, T.ACCESS_TOE, T.APP, T.NETWORK, A.APP, A.PROTECT, A.ADMIN
Security Assurance Requirements (SAR)
ACM_CAP.2, ADO_DEL.1, ADO_IGS.1, ADV_FSP.1, ADV_HLD.1, ADV_RCR.1, AGD_ADM.1, AGD_USR.1, ALC_FLR.1, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_SOF.1, AVA_VLA.1
Security Functional Requirements (SFR)
FDP_ACC.2.1, FDP_ACC.2, FDP_ACF.1.1, FDP_ACF.1.3, FDP_ACF, FDP_ACF.1.4, FDP_ACC.2.2, FDP_ACF.1.2, FDP_ACF.1, FDP_ACC.1, FIA_ATD, FIA_UID, FIA_UID.2.1, FIA_USB, FIA_USB.1.1, FIA_USB.1, FIA_UID.2, FIA_UID.1, FIA_ATD.1, FMT_MSA.1, FMT_MSA, FMT_SMF, FMT_SMF.1.1, FMT_SMR, FMT_SMR.1.2, FMT_MSA.1.1, FMT_MSA.3.1, FMT_MSA.3.2, FMT_SMR.1.1, FMT_MSA.3, FMT_SMF.1, FMT_SMR.1

Standards
CCIMB-99-031

File metadata

Title Websphere Application Server EAL2 Security Target
Author Mark Bellis
Creation date D:20041214074756-05'00'
Modification date D:20041214074956-05'00'
Pages 40
Creator Acrobat PDFMaker 5.0 for Word
Producer Acrobat Distiller 5.0.5 (Windows)

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

CCEVS-VR-0082-2004

Extracted SARs

ADV_FSP.1, ADV_HLD.1, ADV_RCR.1, AGD_ADM.1, AGD_USR.1, ALC_FLR.1, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_SOF.1, AVA_VLA.1

Related CVEs

ID Links Severity CVSS Score Published on
Base Exploitability Impact
CVE-2005-0425
C N
MEDIUM 5.0 2.9 02.05.2005
CVE-2005-1112
C N
MEDIUM 5.0 2.9 02.05.2005
CVE-2005-1872
C N
HIGH 7.5 6.4 03.06.2005
CVE-2005-2091
C N
MEDIUM 4.3 2.9 05.07.2005
CVE-2005-3498
C N
MEDIUM 4.3 2.9 04.11.2005
CVE-2005-4834
C N
MEDIUM 5.0 2.9 31.12.2005
CVE-2006-1093
C N
MEDIUM 6.4 4.9 09.03.2006
CVE-2006-2430
C N
HIGH 10.0 10.0 17.05.2006
CVE-2006-2431
C N
MEDIUM 4.3 2.9 17.05.2006
CVE-2006-2432
C N
HIGH 7.5 6.4 17.05.2006
CVE-2006-2435
C N
MEDIUM 6.4 4.9 17.05.2006
CVE-2006-2436
C N
HIGH 7.5 6.4 17.05.2006
CVE-2006-3231
C N
MEDIUM 4.3 2.9 27.06.2006
CVE-2006-3232
C N
HIGH 10.0 10.0 27.06.2006
CVE-2006-4136
C N
HIGH 7.5 6.4 14.08.2006
CVE-2006-4222
C N
MEDIUM 5.0 2.9 18.08.2006
CVE-2006-4223
C N
MEDIUM 5.0 2.9 18.08.2006
CVE-2006-5323
C N
HIGH 10.0 10.0 17.10.2006
CVE-2006-5324
C N
HIGH 7.5 6.4 17.10.2006
CVE-2006-7166
C N
MEDIUM 5.0 2.9 20.03.2007
CVE-2007-1608
C N
HIGH 7.5 6.4 22.03.2007
CVE-2007-1944
C N
MEDIUM 5.0 2.9 11.04.2007
CVE-2007-3262
C N
HIGH 7.8 6.9 19.06.2007
CVE-2007-3263
C N
HIGH 10.0 10.0 19.06.2007
CVE-2007-3264
C N
HIGH 10.0 10.0 19.06.2007
CVE-2007-3265
C N
MEDIUM 4.3 2.9 19.06.2007
CVE-2007-3960
C N
HIGH 9.3 10.0 24.07.2007
CVE-2007-4833
C N
MEDIUM 5.0 2.9 12.09.2007
CVE-2007-5798
C N
MEDIUM 4.3 2.9 03.11.2007
CVE-2007-5799
C N
MEDIUM 4.3 2.9 03.11.2007
CVE-2007-6679
C N
HIGH 10.0 10.0 10.01.2008
CVE-2008-0389
C N
HIGH 10.0 10.0 23.01.2008
CVE-2008-0740
C N
LOW 2.1 2.9 13.02.2008
CVE-2008-0741
C N
HIGH 10.0 10.0 13.02.2008
CVE-2008-2221
C N
HIGH 10.0 10.0 14.05.2008
CVE-2008-2550
C N
MEDIUM 5.0 2.9 04.06.2008
CVE-2008-4283
C N
HIGH 10.0 10.0 10.02.2009
CVE-2008-4284
C N
MEDIUM 5.8 4.9 10.02.2009
CVE-2008-5411
C N
MEDIUM 5.0 2.9 10.12.2008
CVE-2008-5413
C N
MEDIUM 5.0 2.9 10.12.2008
CVE-2009-0504
C N
LOW 2.1 2.9 17.02.2009
CVE-2009-1898
C N
MEDIUM 5.0 2.9 03.06.2009
CVE-2009-1899
C N
HIGH 10.0 10.0 03.06.2009
CVE-2009-1900
C N
MEDIUM 5.0 2.9 03.06.2009
CVE-2009-1901
C N
HIGH 10.0 10.0 03.06.2009
CVE-2010-0768
C N
MEDIUM 4.3 2.9 01.04.2010
CVE-2010-0769
C N
LOW 1.9 2.9 01.04.2010
CVE-2010-0770
C N
MEDIUM 4.0 2.9 01.04.2010
CVE-2010-3271
C N
MEDIUM 6.8 6.4 18.07.2011
CVE-2011-1307
C N
LOW 2.1 2.9 08.03.2011
CVE-2011-1308
C N
MEDIUM 4.3 2.9 08.03.2011
CVE-2011-1309
C N
HIGH 7.5 6.4 08.03.2011
CVE-2011-1311
C N
MEDIUM 6.0 6.4 08.03.2011
CVE-2011-1314
C N
MEDIUM 5.0 2.9 08.03.2011
CVE-2011-1315
C N
MEDIUM 5.0 2.9 08.03.2011
CVE-2011-1316
C N
MEDIUM 5.0 2.9 08.03.2011
CVE-2011-1318
C N
MEDIUM 5.0 2.9 08.03.2011
CVE-2012-2162
C N
MEDIUM 6.8 6.4 01.05.2012
CVE-2013-0542
C N
MEDIUM 4.3 2.9 24.04.2013
Showing 5 out of 59.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Databases",
  "cert_link": null,
  "dgst": "fa1ab0672250550e",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "CCEVS-VR-0082-2004",
    "cert_lab": [
      "US"
    ],
    "cpe_matches": {
      "_type": "Set",
      "elements": [
        "cpe:2.3:a:ibm:websphere_application_server:5.0.2.8:*:*:*:*:*:*:*",
        "cpe:2.3:a:ibm:websphere_application_server:5.0.2:*:*:*:*:*:*:*",
        "cpe:2.3:a:ibm:websphere_application_server:5.0:*:*:*:*:*:*:*"
      ]
    },
    "direct_transitive_cves": null,
    "eal": "EAL2+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_USR",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VLA",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_HLD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_SOF",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_RCR",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_ADM",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "5.0.2.8"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": {
      "_type": "Set",
      "elements": [
        "CVE-2007-1608",
        "CVE-2006-2430",
        "CVE-2005-1872",
        "CVE-2005-0425",
        "CVE-2005-2091",
        "CVE-2006-5323",
        "CVE-2013-0542",
        "CVE-2012-2162",
        "CVE-2009-0504",
        "CVE-2008-0740",
        "CVE-2009-1898",
        "CVE-2007-3262",
        "CVE-2011-1308",
        "CVE-2008-0389",
        "CVE-2011-1307",
        "CVE-2007-3960",
        "CVE-2008-2550",
        "CVE-2006-4223",
        "CVE-2007-4833",
        "CVE-2008-5411",
        "CVE-2010-0770",
        "CVE-2006-3231",
        "CVE-2005-1112",
        "CVE-2009-1899",
        "CVE-2006-2431",
        "CVE-2006-4136",
        "CVE-2006-3232",
        "CVE-2010-0768",
        "CVE-2005-3498",
        "CVE-2007-3265",
        "CVE-2006-7166",
        "CVE-2007-3263",
        "CVE-2007-5798",
        "CVE-2008-2221",
        "CVE-2007-6679",
        "CVE-2006-5324",
        "CVE-2011-1311",
        "CVE-2010-0769",
        "CVE-2008-0741",
        "CVE-2008-5413",
        "CVE-2011-1314",
        "CVE-2010-3271",
        "CVE-2006-2436",
        "CVE-2011-1315",
        "CVE-2005-4834",
        "CVE-2011-1309",
        "CVE-2006-2432",
        "CVE-2007-5799",
        "CVE-2009-1901",
        "CVE-2008-4284",
        "CVE-2007-1944",
        "CVE-2011-1316",
        "CVE-2006-4222",
        "CVE-2007-3264",
        "CVE-2006-1093",
        "CVE-2008-4283",
        "CVE-2011-1318",
        "CVE-2009-1900",
        "CVE-2006-2435"
      ]
    },
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": null,
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "IBM Corporation",
  "manufacturer_web": "https://www.ibm.com",
  "name": "IBM WebSphere Application Server V5.0.2.8",
  "not_valid_after": "2012-09-06",
  "not_valid_before": "2004-12-02",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": null,
    "cert_frontpage": null,
    "cert_keywords": null,
    "cert_metadata": null,
    "report_filename": "st_vid4023-vr.pdf",
    "report_frontpage": {
      "US": {
        "cert_id": "CCEVS-VR-04-0082",
        "cert_item": "IBM WebSphere Application Server",
        "cert_lab": "US NIAP"
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "US": {
          "CCEVS-VR-04-0082": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR.1": 4
        },
        "ATE": {
          "ATE_COV": 1,
          "ATE_FUN": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 2,
          "EAL 2 augmented": 1,
          "EAL 4": 1,
          "EAL2": 14
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Santosh Chokhani",
      "/CreationDate": "D:20041213113741-05\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 5.0 for Word",
      "/ModDate": "D:20041213114215-05\u002700\u0027",
      "/Producer": "Acrobat Distiller 5.0.5 (Windows)",
      "/Title": "Validation Report",
      "pdf_file_size_bytes": 307253,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 13
    },
    "st_filename": "st_vid4023-st.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.ADMIN": 3,
          "A.APP": 4,
          "A.PROTECT": 3
        },
        "O": {
          "O.ACCESS": 7,
          "O.ADMIN": 6,
          "O.APP": 7,
          "O.ATTR": 6,
          "O.IDENTIFY": 5,
          "O.MANAGE": 7,
          "O.PROTECT": 8,
          "O.RECOVER": 4
        },
        "T": {
          "T.ACCESS_RES": 3,
          "T.ACCESS_TOE": 3,
          "T.APP": 3,
          "T.NETWORK": 2
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ACM": {
          "ACM_CAP.2": 1
        },
        "ADO": {
          "ADO_DEL.1": 1,
          "ADO_IGS.1": 1
        },
        "ADV": {
          "ADV_FSP.1": 1,
          "ADV_HLD.1": 1,
          "ADV_RCR.1": 1
        },
        "AGD": {
          "AGD_ADM.1": 1,
          "AGD_USR.1": 1
        },
        "ALC": {
          "ALC_FLR.1": 5
        },
        "ATE": {
          "ATE_COV.1": 1,
          "ATE_FUN.1": 1,
          "ATE_IND.2": 1
        },
        "AVA": {
          "AVA_SOF.1": 1,
          "AVA_VLA.1": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL2": 49,
          "EAL2 augmented": 1
        }
      },
      "cc_sfr": {
        "FDP": {
          "FDP_ACC.1": 2,
          "FDP_ACC.2": 6,
          "FDP_ACC.2.1": 2,
          "FDP_ACC.2.2": 1,
          "FDP_ACF": 1,
          "FDP_ACF.1": 4,
          "FDP_ACF.1.1": 2,
          "FDP_ACF.1.2": 1,
          "FDP_ACF.1.3": 2,
          "FDP_ACF.1.4": 2
        },
        "FIA": {
          "FIA_ATD": 6,
          "FIA_ATD.1": 1,
          "FIA_UID": 1,
          "FIA_UID.1": 1,
          "FIA_UID.2": 5,
          "FIA_UID.2.1": 2,
          "FIA_USB": 1,
          "FIA_USB.1": 4,
          "FIA_USB.1.1": 2
        },
        "FMT": {
          "FMT_MSA": 1,
          "FMT_MSA.1": 8,
          "FMT_MSA.1.1": 1,
          "FMT_MSA.3": 6,
          "FMT_MSA.3.1": 3,
          "FMT_MSA.3.2": 3,
          "FMT_SMF": 1,
          "FMT_SMF.1": 3,
          "FMT_SMF.1.1": 2,
          "FMT_SMR": 1,
          "FMT_SMR.1": 5,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 1
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "CC": {
          "CCIMB-99-031": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Mark Bellis",
      "/CreationDate": "D:20041214074756-05\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 5.0 for Word",
      "/ModDate": "D:20041214074956-05\u002700\u0027",
      "/Producer": "Acrobat Distiller 5.0.5 (Windows)",
      "/Title": "Websphere Application Server EAL2 Security Target",
      "pdf_file_size_bytes": 729513,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 40
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid4023-vr.pdf",
  "scheme": "US",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_FLR.1",
      "EAL2+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid4023-st.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": false,
      "download_ok": false,
      "extract_ok": false,
      "pdf_hash": null,
      "txt_hash": null
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "f5352c0244eaa695a6209a5a4ba9e6ec2fc9fe450d7aa89e9e97780fc30149ac",
      "txt_hash": "90a306b8d58ca29ef98ca780dbbe3557647fbab1f92179c33882c0cd6a920520"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "a3f5d236774dff9f5d7e5a3e139425b45620e1f5cc638aeb243b622302587bd2",
      "txt_hash": "847f87dd809d40040d2162f2d3a2f164a86385e45e4def37e861f60274d0516b"
    }
  },
  "status": "archived"
}