First published: Tue Apr 02 2019(Updated: )
IBM Spectrum Protect 7.1 and 8.1 is affected by a password exposure vulnerability caused by insecure file permissions. IBM X-Force ID: 148872.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Backup-Archive Client | >=7.1.0.0<=7.1.8.4 | |
IBM Spectrum Protect Backup-Archive Client | >=8.1.0.0<=8.1.6.1 | |
Microsoft Windows | ||
Ibm Spectrum Protect For Virtual Environments | >=7.1.0.0<=7.1.8.4 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.6.1 | |
Ibm Spectrum Protect For Virtual Environments | >=7.1.0.0<=7.1.8.0 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1787 is a password exposure vulnerability in IBM Spectrum Protect 7.1 and 8.1 caused by insecure file permissions.
CVE-2018-1787 affects IBM Spectrum Protect Backup-Archive Client versions 7.1.0.0 to 7.1.8.4 and 8.1.0.0 to 8.1.6.1.
CVE-2018-1787 has a severity rating of 5.5, which is classified as medium.
To fix CVE-2018-1787, update IBM Spectrum Protect to version 7.1.8.5 or 8.1.6.2, or apply the security patches provided by IBM.
You can find more information about CVE-2018-1787 on the IBM Support website and the IBM X-Force ID page.