IBM Security Bulletin: IBM Flex System Manager (FSM) is affected by multiple php vulnerabilities

Multiple security vulnerabilities have been discovered in php that is embedded in the IBM FSM. This bulletin addresses these vulnerabilities.

CVE(s): CVE-2015-8835, CVE-2015-8866, CVE-2016-3141, CVE-2014-9767, CVE-2016-3185, CVE-2016-4070, CVE-2016-4537, CVE-2016-4538, CVE-2016-4542, CVE-2016-4543, CVE-2016-4544, CVE-2016-5094, CVE-2016-5095, CVE-2016-5096

Affected product(s) and affected version(s):

Flex System Manager 1.3.4.x

Flex System Manager 1.3.3.x
Flex System Manager 1.3.2.x

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2chyYn5
X-Force Database: http://ift.tt/2c4Bbz0
X-Force Database: http://ift.tt/2chzBxa
X-Force Database: http://ift.tt/24KfyvM
X-Force Database: http://ift.tt/24KfxI7
X-Force Database: http://ift.tt/24IqFBV
X-Force Database: http://ift.tt/2chz0vw
X-Force Database: http://ift.tt/298Bsi6
X-Force Database: http://ift.tt/297OtMl
X-Force Database: http://ift.tt/297Onog
X-Force Database: http://ift.tt/298BPt5
X-Force Database: http://ift.tt/297OQ9J
X-Force Database: http://ift.tt/2chz8Lb
X-Force Database: http://ift.tt/2c4AZQp
X-Force Database: http://ift.tt/2chz7a5



from IBM Product Security Incident Response Team http://ift.tt/2c4AYfj