CVE-2018-1884: Path Traversal
IBM Case Manager 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 is vulnerable to a "zip slip" vulnerability which could allow a remote attacker to execute code using directory traversal techniques. IBM X-Force ID: 151970.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-1884?
CVE-2018-1884 is a vulnerability in IBM Case Manager versions 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0 that allows a remote attacker to execute code using directory traversal techniques.
What is the severity of CVE-2018-1884?
The severity of CVE-2018-1884 is high, with a CVSS score of 7.8.
How does CVE-2018-1884 affect IBM Case Manager?
CVE-2018-1884 affects IBM Case Manager versions 5.2.0.0, 5.2.0.4, 5.2.1.0, 5.2.1.7, 5.3.0.0, and 5.3.3.0.
How can an attacker exploit CVE-2018-1884?
An attacker can exploit CVE-2018-1884 by utilizing "zip slip" vulnerability, which allows for code execution using directory traversal techniques.
How can I mitigate the vulnerability in IBM Case Manager?
To mitigate the vulnerability in IBM Case Manager, it is recommended to apply the necessary patches and updates provided by IBM.