There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition, Version 7.0 that is used by IBM Sterling Connect:Direct Browser User Interface. These issues were disclosed as part of the IBM Java Runtime updates in April 2016 and July 2016.
CVE(s): CVE-2016-3426, CVE-2016-3485
Affected product(s) and affected version(s):
IBM Sterling Connect:Direct Browser User Interface 1.5.0 through 1.5.0.2 iFix 17
IBM Sterling Connect:Direct Browser User Interface 1.4.0 through 1.4.11.0 iFix 5
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2dFDBmI
X-Force Database: http://ift.tt/1N2N2xe
X-Force Database: http://ift.tt/2b7G65u
from IBM Product Security Incident Response Team http://ift.tt/2d0edup
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.