First published: Fri Jun 08 2018(Updated: )
IBM Security Identity Manager Virtual Appliance 7.0 allows an authenticated attacker to upload or transfer files of dangerous types that can be automatically processed within the environment. IBM X-Force ID: 140055.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Identity Manager | =7.0 | |
IBM Security Identity Manager | =7.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1453 is high with a severity value of 8.8.
An authenticated attacker can exploit CVE-2018-1453 by uploading or transferring files of dangerous types that can be automatically processed within the IBM Security Identity Manager Virtual Appliance 7.0.
IBM Security Identity Manager 7.0 and 7.0.1 are affected by CVE-2018-1453.
Yes, IBM has released fixes for CVE-2018-1453. Please refer to the IBM Security Bulletin for more information.
You can find more information about CVE-2018-1453 on the IBM support website, SecurityTracker, and IBM X-Force Exchange.