Tuesday, February 19, 2019

IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem 840 and 900

There is a vulnerability in Apache Struts which the IBM FlashSystem™ 840 and 900 are susceptible. An exploit of that vulnerability (CVE-2018-11776) could make the system susceptible to attacks which could allow an attacker to execute arbitrary code on the system.

CVE(s): CVE-2018-11776

Affected product(s) and affected version(s):

FlashSystem 840 machine type and models (MTMs) affected include 9840-AE1 and 9843-AE1.
FlashSystem 900 MTMs affected include 9840-AE2 and 9843-AE2.

Supported code versions which are affected

  • VRMFs prior to 1.4.8.1
  • VRMFs prior to 1.5.2.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: https://www-01.ibm.com/support/docview.wss?uid=ibm10735035
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/148694

The post IBM Security Bulletin: A vulnerability in Apache Struts affects the IBM FlashSystem 840 and 900 appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ibm.co/2SbagVd

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.