Boletines de Vulnerabilidades

IBM Security Bulletin: Vulnerability in Apache Commons affects IBM Emptoris Strategic Supply Management, and IBM Emptoris Services Procurement. (CVE-2015-7450)


Información sobre el sistema

   
Software afectado IBM

Descripción

An Apache Commons Collections vulnerability for handling Java object deserialization was addressed by IBM Emptoris Strategic Supply Management, and IBM Emptoris Services Procurement products CVE(s): CVE-2015-7450 Affected product(s) and affected version(s): IBM Emptoris Contract Management 9.5 through 10.0.4 IBM Emptoris Program Management 10.0.0 through 10.0.4 IBM Emptoris Sourcing 10.0.0 through 10.0.4 IBM Emptoris Spend Analysis 10.0.0 through 10.0.4 IBM Emptoris Supplier Lifecycle

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_apache_commons_affects_ibm_emptoris_strategic_supply_management_and_ibm_emptoris_services_procurement_cve_2015_7450?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-7450.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-12-03

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT