IBM Security Bulletin: IBM Systems Director Storage Control is affected by multiple IBM Websphere Application Server (WAS) vulnerabilities (CVE-2016-3092, CVE-2016-5986, CVE-2016-5983)
There are multiple vulnerabilities identified in IBM Websphere Application Server (WAS) that is embedded in IBM Systems Director Storage Control. This update addresses these issues.
CVE(s): CVE-2016-5983, CVE-2016-5986, CVE-2016-3092
Affected product(s) and affected version(s):
From the IBM Systems Director command line enter smcli lsver to determine the level of IBM Systems Director installed.
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2k8JJZu
X-Force Database: http://ift.tt/2cX6Wuu
X-Force Database: http://ift.tt/2ccJKps
X-Force Database: http://ift.tt/2bozrA8
Affected Product and Version(s) | Product and Version shipped as a component |
IBM System Director Storage Control 4.2.6 | IBM Systems Director 6.3.5 |
IBM System Director Storage Control 4.2.7 | IBM Systems Director 6.3.6 |
IBM System Director Storage Control 4.2.8 | IBM Systems Director 6.3.7 |
from IBM Product Security Incident Response Team http://ift.tt/2jmE6JL