CVE-2018-1885
08.04.2019, 15:29
IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could allow an unauthenticated attacker to obtain sensitve information using a specially cracted HTTP request. IBM X-Force ID: 152020.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | business_automation_workflow | 18.0.0.0 |
ibm | business_automation_workflow | 18.0.0.1 |
ibm | business_automation_workflow | 18.0.0.2 |
ibm | business_process_manager | 7.5.0.0 ≤ 𝑥 ≤ 7.5.1.2 |
ibm | business_process_manager | 8.0.0.0 ≤ 𝑥 ≤ 8.0.1.3 |
ibm | business_process_manager | 8.5.0.0 ≤ 𝑥 ≤ 8.5.0.2 |
ibm | business_process_manager | 8.5.5.0 |
ibm | business_process_manager | 8.5.6.0 |
ibm | business_process_manager | 8.5.6.0:cf1 |
ibm | business_process_manager | 8.5.6.0:cf2 |
ibm | business_process_manager | 8.5.7.0 |
ibm | business_process_manager | 8.5.7.0:cf2017.06 |
ibm | business_process_manager | 8.6.0.0 |
ibm | business_process_manager | 8.6.0.0:cf2018.03 |
ibm | business_process_manager_enterprise_service_bus | 8.6 |
ibm | websphere_enterprise_service_bus | 7.0.0.0 ≤ 𝑥 ≤ 7.5.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References