IBM Security Bulletin: Potential Information Disclosure in IBM Websphere Application Server affects IBM Tivoli Netcool Configuration Manager (ITNCM) (CVE-2016-9736)

There is a potential Information Disclosure vulnerability in IBM WebSphere Application Server that is used by IBM Tivoli Netcool Configuration Manager (ITNCM).

CVE(s): CVE-2016-9736

Affected product(s) and affected version(s):

This vulnerability affects the following versions and releases of WebSphere Application Server:

Version 8.5.5 Full Profile
Version 7.0

Included in the following releases:

ITNCM 6.4.2.0 – 6.4.2.2
ITNCM 6.4.1.0 – 6.4.1.4

Please refer to Security Bulletin: Potential Information Disclosure in WebSphere Application Server (CVE-2016-9736)

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2rIIoxG
X-Force Database: http://ift.tt/2iIJjGM

The post IBM Security Bulletin: Potential Information Disclosure in IBM Websphere Application Server affects IBM Tivoli Netcool Configuration Manager (ITNCM) (CVE-2016-9736) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2rIHXUe