Kaspersky ID:
KLA10503
Дата обнаружения:
24/03/2015
Обновлено:
03/06/2020

Описание

Multiple serious vulnerabilities have been found in IBM products.

Below is a complete list of vulnerabilities

  1. Improper WAR applications support in IBM Bluemix can be exploited remotely via unspecified vectors related to Java overlay feature;
  2. Improper API access restrictions in IBM API management can be exploited remotely via a specially designed API calls;
  3. Improper TLS state translation in ITDS and ISDS can be exploited remotely via a specially designed TLS traffic;
  4. Improper query handling in IBM Content Collector can be exploited remotely via a specially designed query;
  5. Improper trace and log realization in IBM TIMAD and SIMAD can be exploited locally via log reading;
  6. Lack of password handling restrictions in IBM RAtional ClearCase can be exploited locally via mani0pulations with installation account.

Первичный источник обнаружения

Связанные продукты

Список CVE

  • CVE-2014-8923
    warning
  • CVE-2015-0138
    warning
  • CVE-2015-0149
    high
  • CVE-2015-0146
    warning
  • CVE-2014-6134
    warning
  • CVE-2015-0178
    warning

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Confirm changes?
Your message has been sent successfully.