Security Bulletin: IBM WebSphere Application Server – Liberty improper session validation vulnerability affects IBM Control Center (CVE-2019-4304)

IBM WebSphere Application Server – Liberty could allow a remote attacker to bypass security restrictions caused by improper session validation.

Affected product(s) and affected version(s):

Affected Product(s)

Version(s)

IBM Control Center

6.0.0.0 through 6.0.0.2 iFix08

IBM Control Center

6.1.0.0 through 6.1.2.1 iFix01

 

 

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/1284574

The post Security Bulletin: IBM WebSphere Application Server – Liberty improper session validation vulnerability affects IBM Control Center (CVE-2019-4304) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2RAj0ao