First published: Thu Oct 11 2018(Updated: )
IBM Spectrum Symphony 7.1.2 and 7.2.0.2 could allow an authenticated user to obtain sensitive user information such as passwords through the WebUI. IBM X-Force ID: 146343.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Platform Symphony | =7.1-fp1 | |
IBM Platform Symphony | =7.1.1 | |
Ibm Specturm Symphony | =7.1.2 | |
Ibm Specturm Symphony | =7.2.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1708 is medium with a CVSS score of 6.5.
An authenticated user can obtain sensitive user information such as passwords through the WebUI.
IBM Spectrum Symphony versions 7.1.2 and 7.2.0.2 are affected by CVE-2018-1708.
Yes, IBM has provided a fix for CVE-2018-1708. Please refer to the IBM support website for more information.
You can find more information about CVE-2018-1708 on the IBM X-Force Exchange website and the IBM support website.