CVE-2017-1405: Medium severity ibm security identity manager vulnerability
Published Jun 8, 2018
·Updated
IBM Security Identity Manager Virtual Appliance 7.0 processes patches, image backups and other updates without sufficiently verifying the origin and integrity of the code. IBM X-Force ID: 127392.
Affected Software
2 affected components
IBM Security Identity Manager=7.0
IBM Security Identity Manager=7.0.1
Remediation
Patch Available
Event History
Jun 8, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1405?
The severity of CVE-2017-1405 is medium with a severity value of 4.9.
2
Which IBM Security Identity Manager versions are affected by CVE-2017-1405?
IBM Security Identity Manager versions 7.0 and 7.0.1 are affected by CVE-2017-1405.
3
What is the Common Weakness Enumeration (CWE) ID for CVE-2017-1405?
The Common Weakness Enumeration (CWE) ID for CVE-2017-1405 is 345.
4
How can I verify the origin and integrity of code for IBM Security Identity Manager Virtual Appliance 7.0?
To verify the origin and integrity of code for IBM Security Identity Manager Virtual Appliance 7.0, follow the recommendations provided by IBM in their security advisory.
5
Where can I find more information about CVE-2017-1405?
You can find more information about CVE-2017-1405 in the IBM support document and IBM X-Force vulnerability report linked in the references section.