Vulnerability Bulletins |
IBM Security Bulletin: IBM Tivoli Netcool Configuration Manager (ITNCM) has noted vulnerable to Open Source Apache Batik vulnerability - Reported in 03/17/2015 X-Force Report> (CVE-2015-0250) |
|
| Affected software | IBM |
|
Apache Batik could in theory allow a remote attacker to obtain sensitive information. By persuading a victim to open a specially-crafted SVG file, an attacker could exploit this vulnerability to reveal files and obtain sensitive information. CVE(s): CVE-2015-0250 Affected product(s) and affected version(s): ITNCM: 6.3.0.6 and earlier ITNCM: 6.4.1.2 and earlier Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_tivoli_netcool_configuration_manager_itncm_has_noted_vulnerable_to_open_source_apache_batik_vulnerability_reported_in_03_17_2015_x_force_report_cve_2015_0250?lang=en_us |
|






