First published: Wed Aug 15 2018(Updated: )
IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 11029.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Application Dependency Discovery Manager | =7.2.2 | |
IBM Tivoli Application Dependency Discovery Manager | =7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2018-1455.
The severity of CVE-2018-1455 is high with a CVSS score of 8.8.
The affected software is IBM Tivoli Application Dependency Discovery Manager version 7.2.2 and 7.3.0.
IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 is vulnerable to cross-site request forgery (CSRF) which could allow an attacker to execute malicious and unauthorized actions.
To fix this vulnerability, update IBM Tivoli Application Dependency Discovery Manager to a patched version.