First published: Tue Mar 05 2019(Updated: )
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an attacker to change one of the settings related to InfoSphere Business Glossary Anywhere due to improper access control. IBM X-Force ID: 152528.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Information Governance Catalog | =11.3 | |
IBM InfoSphere Information Governance Catalog | =11.5 | |
IBM InfoSphere Information Governance Catalog | =11.7 | |
Ibm Infosphere Information Server On Cloud | =11.5 | |
Ibm Infosphere Information Server On Cloud | =11.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1899 is a vulnerability in IBM InfoSphere Information Server versions 11.3, 11.5, and 11.7 that allows an attacker to change one of the settings related to InfoSphere Business Glossary Anywhere due to improper access control.
CVE-2018-1899 has a severity rating of 4.3, which is considered medium.
CVE-2018-1899 affects IBM InfoSphere Information Server 11.3, 11.5, and 11.7, as well as IBM InfoSphere Information Server on Cloud 11.5 and 11.7.
An attacker can exploit CVE-2018-1899 by manipulating the settings related to InfoSphere Business Glossary Anywhere through improper access control.
Yes, IBM has provided a fix for CVE-2018-1899. Please refer to the IBM support website for more information.