IBM Security Bulletin: IBM InfoSphere Master Data Management – Collaborative Edition could allow an authenticated user with CA level access to change change their ca-id to another users and read sensitive information.

Oct 24, 2018 9:00 am EDT

Categorized: Low Severity

Share this post:

IBM InfoSphere Master Data Management – Collaborative Edition could allow an authenticated user with CA level access to change change their ca-id to another users and read sensitive information.

CVE(s): CVE-2018-1380

Affected product(s) and affected version(s):

Affected IBM InfoSphere Master Data Management – Collaborative Edition

Affected Versions
IBM InfoSphere Master Data Management – Collaborative Edition11.4
IBM InfoSphere Master Data Management – Collaborative Edition11.5
IBM InfoSphere Master Data Management – Collaborative Edition11.6

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10735411
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/138077



from IBM Product Security Incident Response Team https://ift.tt/2RbPjt3