There is a vulnerability in Apache Struts which the IBM FlashSystem
840 and 900 are susceptible. An exploit of that vulnerability (CVE-2018-11776) could make the system susceptible to attacks which could allow an attacker to execute arbitrary code on the system.
CVE(s): CVE-2018-11776
Affected product(s) and affected version(s):
FlashSystem 840 machine type and models (MTMs) affected include 9840-AE1 and 9843-AE1.
FlashSystem 900 MTMs affected include 9840-AE2 and 9843-AE2.
Supported code versions which are affected
- VRMFs prior to 1.4.8.1
- VRMFs prior to 1.5.2.1
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10735035
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148694
The post IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem 840 and 900 appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ibm.co/2SbagVd
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.