There is a vulnerability in Apache Struts which the IBM FlashSystem
V840 is susceptible. An exploit of that vulnerability (CVE-2018-11776) could make the system susceptible to attacks which could allow an attacker to execute arbitrary code on the system.
CVE(s): CVE-2018-11776
Affected product(s) and affected version(s):
Storage Node machine type and models (MTMs) affected:9840-AE1 and 9843-AE1
Controller Node MTMs affected: 9846-AC0, 9848-AC0, 9846-AC1, and 9848-AC1
Supported storage node code versions which are affected
- VRMFs prior to 1.4.8.1
- VRMFs prior to 1.5.2.1
Supported controller node code versions which are affected
- VRMFs prior to 7.8.1.8
- VRMFs prior to 8.1.3.4
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10735023
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148694
The post IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem V840 appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2X6ukvL
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.