Vulnerability Bulletins

IBM Security Bulletin: Security Bulletin: A cross-site request forgery vulnerability affects the IBM FlashSystem model V9000 (CVE-2015-7446)

   
Affected software IBM
 
There is a cross-site request forgery vulnerability to which the IBM® FlashSystem™ V9000 is susceptible. An exploit of this vulnerability could allow cross-site scripting attacks, Web cache poisoning, and other malicious activities. CVE(s): CVE-2015-7446Affected product(s) and affected version(s):FlashSystem V9000 including machine type and models (MTMs) for all available code levels. MTMs affected include 9846-AE2, 9848-AE2, 9846-AC2, and 9848-AC2 Refer to the following reference

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_security_bulletin_a_cross_site_request_forgery_vulnerability_affects_the_ibm_flashsystem_model_v9000_cve_2015_7446?lang=en_us