Vulnerability Bulletins

IBM Security Bulletin: Security Vulnerability in IBM WebSphere Application Server affects IBM Content Collector (CVE-2015-1920)


System information

   
Affected software IBM

Description

WebSphere Application Server that is used with IBM Content Collector could allow a remote attacker to execute arbitrary code by connecting to a management port and executing a specific sequence of instructions. CVE(s): CVE-2015-1920 Affected product(s) and affected version(s): IBM Content Collector 2.1.0 - 4.0.1 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_vulnerability_in_ibm_websphere_application_server_affects_ibm_content_collector_cve_2015_19201?lang=en_us

Standar resources

Property Value
CVE CVE-2015-1920 ,CVE-2015-0197 ,CVE-2015-0198 ,CVE-2015-0199 ,CVE-2015-0203 ,CVE-2015-0223 ,CVE-2015-0224 ,CVE-2014-8501 ,CVE-2014-8502 ,CVE-2014-8503 and CVE-2015-4000.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-15
Ministerio de Defensa
CNI
CCN
CCN-CERT