Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in Apache Standard Taglibs affects IBM WebSphere Application Server (CVE-2015-0254)

   
Affected software IBM
 
There is an XML External Entity Injection (XXE) vulnerability in the Apache Standard Taglibs that affects IBM WebSphere Application Server.CVE(s): CVE-2015-0254Affected product(s) and affected version(s):This vulnerability affects the following versions and releases of IBM WebSphere Application Server Version 8.5.5 Full Profile and Liberty Version 8.5 Full Profile and Liberty Version 8.0 Version 7.0 Version 6.1Refer to the following reference URLs for remediation and additional vulnerability

More info:

https://www.ibm.com/blogs/psirt/ibm-security-bulletin-vulnerability-in-apache-standard-taglibs-affects-ibm-websphere-application-server-cve-2015-0254/