Tuesday, February 19, 2019

IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem V840

There is a vulnerability in Apache Struts which the IBM FlashSystem™ V840 is susceptible. An exploit of that vulnerability (CVE-2018-11776) could make the system susceptible to attacks which could allow an attacker to execute arbitrary code on the system.

CVE(s): CVE-2018-11776

Affected product(s) and affected version(s):

Storage Node machine type and models (MTMs) affected:9840-AE1 and 9843-AE1

Controller Node MTMs affected: 9846-AC0, 9848-AC0, 9846-AC1, and 9848-AC1

Supported storage node code versions which are affected

  • VRMFs prior to 1.4.8.1
  • VRMFs prior to 1.5.2.1

Supported controller node code versions which are affected

  • VRMFs prior to 7.8.1.8
  • VRMFs prior to 8.1.3.4

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10735023
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148694

The post IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem V840 appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ibm.co/2X6ukvL

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.