CVE-2018-1719: Medium severity IBM WebSphere Application Server Feature Pack for Web Services vulnerability
IBM WebSphere Application Server 8.5 and 9.0 could provide weaker than expected security under certain conditions. This could result in a downgrade of TLS protocol. A remote attacker could exploit this vulnerability to perform man-in-the-middle attacks. IBM X-Force ID: 147292.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1719?
CVE-2018-1719 is considered a significant vulnerability due to its potential for enabling man-in-the-middle attacks.
How do I fix CVE-2018-1719?
To mitigate CVE-2018-1719, upgrade IBM WebSphere Application Server to version 8.5.5.14 or higher, or version 9.0.0.8 or higher.
What type of attacks can exploit CVE-2018-1719?
CVE-2018-1719 can be exploited to perform man-in-the-middle attacks by downgrading TLS protocol security.
Which versions of IBM WebSphere Application Server are affected by CVE-2018-1719?
CVE-2018-1719 affects IBM WebSphere Application Server versions below 8.5.5.14 and 9.0.0.8.
Is CVE-2018-1719 a remote vulnerability?
Yes, CVE-2018-1719 can be exploited remotely by attackers without physical access to the system.