CVE-2017-1583: Infoleak
Published Oct 24, 2017
·Updated
IBM WebSphere Application Server (IBM Liberty for Java for Bluemix 3.13)could allow a remote attacker to obtain sensitive information caused by improper error handling by MyFaces in JSF.
Affected Software
1 affected component
IBM Liberty Bluemix=3.13
Event History
Oct 24, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1583?
CVE-2017-1583 has been rated as a medium severity vulnerability.
2
How do I fix CVE-2017-1583?
To fix CVE-2017-1583, update IBM WebSphere Application Server (IBM Liberty for Java for Bluemix) to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2017-1583?
CVE-2017-1583 affects users of IBM WebSphere Application Server version 3.13 deployed in Bluemix.
4
What information can be exposed due to CVE-2017-1583?
CVE-2017-1583 can allow remote attackers to gain access to sensitive information due to improper error handling.
5
Is there a workaround for CVE-2017-1583?
There are no official workarounds for CVE-2017-1583; upgrading to a patched version is recommended.