CVE-2018-1969: Malicious File Upload
IBM Security Identity Manager 6.0.0 allows the attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment. IBM X-Force ID: 153750.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-1969?
CVE-2018-1969 is a vulnerability in IBM Security Identity Manager 6.0.0 that allows an attacker to upload or transfer dangerous files that can be automatically processed within the product's environment.
How severe is CVE-2018-1969?
CVE-2018-1969 has a severity rating of 9.9, which is classified as critical.
What software versions are affected by CVE-2018-1969?
CVE-2018-1969 affects IBM Security Identity Manager versions up to and including 6.0.0.20.
How can an attacker exploit CVE-2018-1969?
An attacker can exploit CVE-2018-1969 by uploading or transferring dangerous files that can be automatically processed within the IBM Security Identity Manager environment.
Are there any references for CVE-2018-1969?
Yes, you can find references for CVE-2018-1969 at the following URLs: [http://www.securityfocus.com/bid/106554](http://www.securityfocus.com/bid/106554) and [https://exchange.xforce.ibmcloud.com/vulnerabilities/153750](https://exchange.xforce.ibmcloud.com/vulnerabilities/153750)