Fwd: [CIVN-2020-0271] Information Disclosure Vulnerability in IBM WebSphere Application Server

1 year ago 84

Severity Rating: MEDIUM

Software Affected

ART/Agent  8.1.5

ART/Agent  8.1.5.1

ART/Agent  8.1.5.2

ART/Agent  8.1.5.3

ART/Agent  8.1.5.4

ART/Agent  8.1.5.5

ART/Agent  8.1.5.6

ART/Agent  8.1.6

ART/Agent  8.1.6.1

ART/Agent  8.1.6.2

ART/Agent  8.1.6.3

ART/Agent  8.1.6.4

Overview

A Vulnerability has been reported in IBM WebSphere Application Server which

could allow an attacker to obtain sensitive information leading to further

attacks.

Description

This vulnerability exists in IBM WebSphere Application Server- Liberty

which is used by IBM License Key Server Administration & Reporting Tool

(ART) and Administration Agent due to an error while checking parameters. A

remote attacker could exploit this vulnerability to obtain sensitive

information.

Successful exploitation of this vulnerability could lead to spoofing

attacks on the targeted system.

Solution

Apply appropriate patches as mentioned in the below link:

Vendor Information

IBM

About Cert Advisory

Related Posts

Read Entire Article