Boletines de Vulnerabilidades |
IBM Security Bulletin: Incorrect SSL/TLS handling in Remote Artifact Loader in IBM Business Process Manager Advanced and WebSphere Process Server |
|
| Software afectado | IBM |
|
IBM WebSphere Process Server and IBM Business Process Manager Advanced have a component "Remote Artifact Loader" (RAL) that allows access to artifacts contained in other applications. In remote access cases a HTTPS connection from the RAL client to the RAL server is established. This HTTPS connection does not honor the Application Servers configuration SSL /TLS connections. CVE(s): CVE-2015-7441 Affected product(s) and affected version(s): WebSphere Process Server V7 IBM Business More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_incorrect_ssl_tls_handling_in_remote_artifact_loader_in_ibm_business_process_manager_advanced_and_websphere_process_server?lang=en_us |
|














