IBM Security Bulletin: WebSphere DataPower Appliances is affected by multiple issues

WebSphere DataPower Appliances has addressed the following vulnerabilities: CVE-2018-1447 CVE-2018-1388 CVE-2018-0702 CVE-2016-0705 CVE-2017-3732 CVE-2017-3736 CVE-2018-1428

CVE(s): CVE-2018-1447, CVE-2018-1388, CVE-2016-0702, CVE-2016-0705, CVE-2017-3732, CVE-2017-3736, CVE-2018-1428

Affected product(s) and affected version(s):

Affected WebSphere DataPower AppliancesAffected Versions
IBM DataPower Gateway7.1.0.0 – 7.1.0.23
IBM DataPower Gateway7.2.0.0 – 7.2.0.21
IBM DataPower Gateway7.5.0.0 – 7.5.0.15
IBM DataPower Gateway7.5.1.0 – 7.5.1.14
IBM DataPower Gateway7.6.0.0 – 7.6.0.7
IBM DataPower Gateway7.5.2.0 – 7.5.2.14
IBM DataPower Gateway CD7.7.0.0 – 7.7.1.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10726039
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/139972
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/138212
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/111144
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/111140
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/121313
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134397
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/139073

The post IBM Security Bulletin: WebSphere DataPower Appliances is affected by multiple issues appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2Cz7wyp