CVE-2015-1886: High severity IBM WebSphere Portal vulnerability
The Remote Document Conversion Service (DCS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, 8.0.0 before 8.0.0.1 CF16, and 8.5.0 through CF05 allows remote attackers to cause a denial of service (memory consumption) via crafted requests.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1886?
CVE-2015-1886 is classified as a medium severity vulnerability due to its potential for denial of service.
How do I fix CVE-2015-1886?
To fix CVE-2015-1886, it is recommended to upgrade to the latest version of IBM WebSphere Portal that addresses this vulnerability.
What software versions are affected by CVE-2015-1886?
CVE-2015-1886 affects IBM WebSphere Portal versions 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF29, and various 8.0.0 and 8.5.0 versions.
What type of attack can CVE-2015-1886 facilitate?
CVE-2015-1886 can facilitate a denial of service attack by causing memory consumption through crafted requests.
Is there a workaround for CVE-2015-1886?
There are no specific workarounds for CVE-2015-1886 apart from applying the appropriate patches to mitigate the risk.