First published: Fri Jan 19 2018(Updated: )
IBM Curam Social Program Management 6.0.5, 6.1.1, 6.2.0, and 7.0.1 within Citizen Portal could allow an authenticated user to withdraw other user's submitted applications from the system and possibly obtain privileges. IBM X-Force ID: 137380.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Curam Social Program Management | =6.0.5 | |
IBM Curam Social Program Management | =6.1.1.0 | |
IBM Curam Social Program Management | =6.2.0.0 | |
IBM Curam Social Program Management | =7.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1362 is medium.
CVE-2018-1362 could allow an authenticated user to withdraw other user's submitted applications from the system and possibly obtain privileges.
IBM Curam Social Program Management versions 6.0.5, 6.1.1, 6.2.0, and 7.0.1 are affected by CVE-2018-1362.
To fix CVE-2018-1362, apply the necessary patches or updates provided by IBM.
More information about CVE-2018-1362 can be found on the IBM Support website (http://www.ibm.com/support/docview.wss?uid=swg22012528) and the IBM X-Force ID (https://exchange.xforce.ibmcloud.com/vulnerabilities/137380).