IBM Security Bulletin: Information disclosure in IBM HTTP Server (CVE-2017-12613)

There is a potential information disclosure in IBM HTTP Server used by WebSphere Application Server.

CVE(s): CVE-2017-12613

Affected product(s) and affected version(s):

This vulnerability affects the following versions and releases of IBM HTTP Server (powered by Apache) component in all editions of WebSphere Application Server and bundling products.

  • Version 9.0
  • Version 8.5
  • Version 8.0
  • Version 7.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=swg22013598
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134049

The post IBM Security Bulletin: Information disclosure in IBM HTTP Server (CVE-2017-12613) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2Gx3rcg