First published: Thu Dec 13 2018(Updated: )
IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 152021.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Access Manager | >=9.0.1.0<=9.0.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1886 is a vulnerability in IBM Security Access Manager Appliance 9.0.1.0, 9.0.2.0, 9.0.3.0, 9.0.4.0, and 9.0.5.0 that allows unauthorized users to access sensitive information.
CVE-2018-1886 has a severity rating of 5.3, which is considered medium.
CVE-2018-1886 exposes sensitive information, which can be used by attackers to launch further attacks on IBM Security Access Manager.
CVE-2018-1886 is associated with CWE-200, which is the classification for information exposure.
To fix CVE-2018-1886, you should apply the necessary updates or patches provided by IBM to address the vulnerability.