Lucene search

K
ibmIBMF003310E52FD19DA2009910EA8062A1123AC99238A586D65B5DF23DB748B7AAC
HistoryJun 16, 2018 - 2:07 p.m.

Security Bulletin: Information Server Connector Migration Tool allows a user with limited role to create/modify/replace some jobs (CVE-2015-0180)

2018-06-1614:07:36
www.ibm.com
8

EPSS

0.001

Percentile

41.8%

Summary

A user with limited role may be able to create/modify/delete specific types of jobs.

Vulnerability Details

CVEID:CVE-2015-0180**
DESCRIPTION**: IBM Information Server Connector Migration Tool could allow a user with limited role to create/modify/delete specific types of jobs that they do not have access to.

CVSS Base Score: 3.5
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/100946 for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (AV:N/AC:M/Au:S/C:N/I:P/A:N)** **

Affected Products and Versions

The following product, running on all supported platforms, are affected:
IBM InfoSphere Information Server: versions 8.1 to 11.3

Remediation/Fixes

Product

| VRMF|APAR|Remediation/First Fix
—|—|—|—
InfoSphere Information Server Connector Migration Tool| 11.3| JR51665| --Apply IBM InfoSphere Connector Migration Tool Security Patch
InfoSphere Information Server Connector Migration Tool| 9.1| JR51665| --Apply IBM InfoSphere Connector Migration Tool Security Patch
InfoSphere Information Server Connector Migration Tool| 8.7| JR51665| --Apply IBM InfoSphere Connector Migration Tool Security Patch
InfoSphere Information Server Connector Migration Tool| 8.5| JR51665|
--Apply IBM InfoSphere Connector Migration Tool Security Patch
InfoSphere Information Server Connector Migration Tool| 8.1| JR51665| Contact IBM customer support.

Note: The same fix may be listed under multiple vulnerabilities. Installing the fix addresses all vulnerabilities to which the fix applies. Also, some fixes require installing both a fix pack and a subsequent patch. While the fix pack must be installed first, any additional patches required may be installed in any order.

Workarounds and Mitigations

None

EPSS

0.001

Percentile

41.8%

Related for F003310E52FD19DA2009910EA8062A1123AC99238A586D65B5DF23DB748B7AAC