CVE-2015-4997: Medium severity ibm websphere portal vulnerability
Published Oct 29, 2015
·Updated
IBM WebSphere Portal 8.5.0 before CF08 allows remote attackers to bypass intended access restrictions via a crafted request.
Affected Software
1 affected component
IBM WebSphere Portal=8.5.0.0
Remediation
Patch Available
Event History
Oct 29, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4997?
CVE-2015-4997 has been assigned a medium severity rating due to its potential impact on access control.
2
How do I fix CVE-2015-4997?
To mitigate CVE-2015-4997, it is recommended to upgrade IBM WebSphere Portal to version 8.5.0 CF08 or later.
3
What systems are affected by CVE-2015-4997?
CVE-2015-4997 affects IBM WebSphere Portal version 8.5.0.0 prior to cumulative fix 08.
4
Can CVE-2015-4997 be exploited remotely?
Yes, CVE-2015-4997 allows remote attackers to bypass access restrictions through crafted requests.
5
Is a patch available for CVE-2015-4997?
Yes, IBM provides a cumulative fix that addresses the vulnerability in their WebSphere Portal software.