IBM Security Bulletin: Content Collector for Email affected by privilege escalation vulnerability in WebSphere Application Server
Apr 13, 2018 9:00 am EDT
Categorized: High Severity
Share this post:
Content Collector for Email has addressed a privilege escalation vulnerability in WebSphere Application Server which could provide weaker than expected security when using the Administrative Console. An authenticated remote attacker could exploit this vulnerability to possibly gain elevated privileges.
CVE(s): CVE-2017-1731
Affected product(s) and affected version(s):
Content Collector for Email 3.0
Content Collector for Email 4.0
Content Collector for Email 4.0.1
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=swg22015034
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134912
from IBM Product Security Incident Response Team https://ift.tt/2IT970p