First published: Wed Feb 01 2017(Updated: )
IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid credentials.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Integration Bus for z/OS | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8918 is classified as a high severity vulnerability due to the potential for unauthorized access.
To mitigate CVE-2016-8918, update your IBM Integration Bus to the latest version and review your authentication settings.
CVE-2016-8918 affects users of IBM Integration Bus version 10.0 under non-default configurations.
CVE-2016-8918 is an authentication vulnerability that allows remote users to bypass credential checks.
If unable to upgrade, carefully review and modify your authentication configurations to prevent unauthorized access.