Lucene search

K
ibmIBME518D8F523B5F3961DA49EFDF2AC65CAC66C50F9E4EDE20F40A0D97252F9E1EE
HistoryJun 15, 2018 - 7:02 a.m.

Security Bulletin: Log viewer vulnerability affects IBM Workload Deployer (CVE-2014-6190)

2018-06-1507:02:45
www.ibm.com
10

EPSS

0.002

Percentile

58.8%

Summary

Log viewer vulnerability affects IBM Workload Deployer.

Vulnerability Details

CVEID:CVE-2014-6190

DESCRIPTION:
Defined system users without proper permissions can access the log viewer functionality by entering the log page URLs in their browser.

CVSS Base Score: 5.0
CVSS Temporal Score: See <https://exchange.xforce.ibmcloud.com/vulnerabilities/98561&gt; for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (AV:N/AC:L/Au:N/C:P/I:N/A:N)

Affected Products and Versions

IBM Workload Deployer version 3.1 and later

Remediation/Fixes

The solution is to apply the IBM Workload Deployer Iinterim fix6.

Product

|

VRMF

|

Remediation/First Fix

—|—|—
IBM Workload Deployer System| Release V3.1.0.7| IWD 3.1.0.7 Interim Fix 6

http://www-933.ibm.com/support/fixcentral/swg/selectFixes?product=ibm/WebSphere/IBM+Workload+Deployer&release=3.1.0.7&platform=All&function=fixId&fixids=3.1.0.7-ifix6-IBM_Workload_Deployer&includeSupersedes=0

Workarounds and Mitigations

None

EPSS

0.002

Percentile

58.8%

Related for E518D8F523B5F3961DA49EFDF2AC65CAC66C50F9E4EDE20F40A0D97252F9E1EE