Lucene search

K
ibmIBM27CA57133D4B5B1F4E49A540317B3E5B1F12D9FE95D8816B99C194B146A605F5
HistoryNov 18, 2021 - 9:03 a.m.

Security Bulletin: Vulnerability in WebSphere Application Server affect IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise

2021-11-1809:03:12
www.ibm.com
11
websphere application server
ibm cloud orchestrator
ibm cloud orchestrator enterprise
vulnerability
upgrade
interim fix

EPSS

0.001

Percentile

42.7%

Summary

WebSphere Application Server is shipped with IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise. A vulnerability has been identified in WebSphere Application Server and the information about their fixes is published in a security bulletin.

Vulnerability Details

Refer to the security bulletin(s) listed in the Remediation/Fixes section

Affected Products and Versions

Affected Product(s) Version(s)
Cloud Orchestrator 2.5.0.10

Remediation/Fixes

The recommended solution is to manually upgrade to the appropriate WebSphere Application Server Interim Fix on IBM Cloud Orchestrator and IBM Cloud Orchestrator Enterprise 2.5.0.10.

Consult the following WebSphere Application Server security bulletin for the vulnerability details and information about their fixes:

Security Bulletin: WebSphere Application Server is vulnerable to Information Disclosure (CVE-2021-29842)

Workarounds and Mitigations

None

EPSS

0.001

Percentile

42.7%

Related for 27CA57133D4B5B1F4E49A540317B3E5B1F12D9FE95D8816B99C194B146A605F5