CVE-2018-1453: Malicious File Upload
IBM Security Identity Manager Virtual Appliance 7.0 allows an authenticated attacker to upload or transfer files of dangerous types that can be automatically processed within the environment. IBM X-Force ID: 140055.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1453?
The severity of CVE-2018-1453 is high with a severity value of 8.8.
How can an attacker exploit CVE-2018-1453?
An authenticated attacker can exploit CVE-2018-1453 by uploading or transferring files of dangerous types that can be automatically processed within the IBM Security Identity Manager Virtual Appliance 7.0.
Which IBM products are affected by CVE-2018-1453?
IBM Security Identity Manager 7.0 and 7.0.1 are affected by CVE-2018-1453.
Is there a fix available for CVE-2018-1453?
Yes, IBM has released fixes for CVE-2018-1453. Please refer to the IBM Security Bulletin for more information.
Where can I find more information about CVE-2018-1453?
You can find more information about CVE-2018-1453 on the IBM support website, SecurityTracker, and IBM X-Force Exchange.