First published: Thu Oct 29 2015(Updated: )
IBM WebSphere Portal 8.5.0 before CF08 allows remote attackers to bypass intended access restrictions via a crafted request.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere Portal | =8.5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4997 has been assigned a medium severity rating due to its potential impact on access control.
To mitigate CVE-2015-4997, it is recommended to upgrade IBM WebSphere Portal to version 8.5.0 CF08 or later.
CVE-2015-4997 affects IBM WebSphere Portal version 8.5.0.0 prior to cumulative fix 08.
Yes, CVE-2015-4997 allows remote attackers to bypass access restrictions through crafted requests.
Yes, IBM provides a cumulative fix that addresses the vulnerability in their WebSphere Portal software.