IBM Security Bulletin: IBM Security Identity Manager is affected by multiple vulnerabilities (CVE-2018-1956, CVE-2018-1969, CVE-2018-1967 )

IBM Security Identity Manager (ISIM) has addressed the following vulnerabilities that can allow attackers to compromise user accounts via weak passwords, uploading or transferring dangerous files types, or cross-site scripting.

CVE(s): CVE-2018-1956, CVE-2018-1969, CVE-2018-1967

Affected product(s) and affected version(s):

ProductVersion
IBM Security Identity Manager6.0.0 – 6.0.0.20

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10794615
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/153628
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/153750
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/153748

The post IBM Security Bulletin: IBM Security Identity Manager is affected by multiple vulnerabilities (CVE-2018-1956, CVE-2018-1969, CVE-2018-1967 ) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ibm.co/2D2OMp3