Lucene search

K
ibmIBM142B1BA6B62A94740D651FE3E4D0F0F6D477022D6F17F392FBFC30D1D4D904E2
HistoryApr 27, 2021 - 7:45 p.m.

Security Bulletin:Security vulnerabilities have been identified in IBM WebSphere Application Server shipped with IBM Security Identity Manager

2021-04-2719:45:58
www.ibm.com
11

0.015 Low

EPSS

Percentile

87.0%

Summary

IBM WebSphere Application Server (WAS) is shipped with IBM Security Identity Manager (ISIM). Information about security vulnerabilities affecting IBM WebSphere Application Server has been published in a security bulletin.

Vulnerability Details

Refer to the security bulletin(s) listed in the Remediation/Fixes section

Affected Products and Versions

Affected Product(s) Version(s)
ISIM 6.0.0
ISIM 6.0.2

Remediation/Fixes

Principal Product and Version(s) Affected Supporting Product and Version(s) Affected Supporting Product Security Bulletin
ISIM 6.0.0 WAS 8.5

Security Bulletin: XML External Entity (XXE) Injection vulnerability in traditional WebSphere Application Server (CVE-2020-20453)

Security Bulletin: Vulnerability in Dojo affects in traditional WebSphere Application Server (CVE-2020-5258)

Security Bulletin: Vulnerability in Apache MyFaces affects in traditional WebSphere Application Server (CVE-2020-26296)

ISIM 6.0.2| WAS 9

Workarounds and Mitigations

None