IBM Security Bulletin: Rational Asset Analyzer (RAA) is affected by a WAS Liberty vulnerability

Sep 11, 2018 9:00 am EDT

Categorized: Medium Severity

Share this post:

Rational Asset Analyzer (RAA) has addressed the following vulnerability: IBM WebSphere Application Server Liberty could allow a remote attacker to obtain sensitive information, caused by mishandling of exceptions by the SAML Web SSO feature.

CVE(s): CVE-2018-1553

Affected product(s) and affected version(s):

Affected Asset Analyzer (RAA)Affected Versions
Rational Asset Analyzer6.1.0.0 – 6.1.0.17

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10720295
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/142890



from IBM Product Security Incident Response Team https://ift.tt/2N8B3nH