CVE-2018-1838: Infoleak
Published Oct 12, 2018
·Updated
IBM WebSphere Application Server 8.5 and 9.0 in IBM Cloud could allow a remote attacker to obtain sensitive information caused by improper handling of passwords. IBM X-Force ID: 150811.
Affected Software
3 affected components
IBM WebSphere Application Server Feature Pack for Web Services
IBM WebSphere Application Server Feature Pack for Web Services=8.5.0.0
IBM WebSphere Application Server Feature Pack for Web Services=9.0.0.0
Event History
Oct 12, 2018
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-1838?
The severity of CVE-2018-1838 is classified as moderate due to the potential exposure of sensitive information.
2
How do I fix CVE-2018-1838?
To fix CVE-2018-1838, apply the latest security updates and patches provided by IBM for WebSphere Application Server.
3
Who is affected by CVE-2018-1838?
CVE-2018-1838 affects users of IBM WebSphere Application Server versions 8.5 and 9.0 in IBM Cloud.
4
What type of vulnerability is CVE-2018-1838?
CVE-2018-1838 is an information disclosure vulnerability caused by improper handling of passwords.
5
Can CVE-2018-1838 be exploited remotely?
Yes, CVE-2018-1838 can be exploited remotely by an attacker to gain access to sensitive information.