Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple Security Vulnerabilities found in IBM Sterling Control Center (CVE-2014-0411, CVE-2014-0050, CVE-2014-0925)


Información sobre el sistema

   
Software afectado IBM

Descripción

A number of security vulnerabilities have been discovered in IBM Runtime Environment, Javaâ„¢ Technology Edition (IBM RE), and Apache Commons FileUpload used IBM Sterling Control Center. Sterling Control Center is also vulnerable to Cross site scripting attacks. CVE(s): CVE-2014-0411, CVE-2014-0050 and CVE-2014-0925 Affected product(s) and affected version(s): IBM Sterling Control Center 5.4.1 through 5.4.1.0 iFix01 IBM Sterling Control Center 5.4.0 through 5.4.0.1 iFix02

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_security_vulnerabilities_found_in_ibm_sterling_control_center_cve_2014_0411_cve_2014_0050_cve_2014_0925?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-0411 ,CVE-2014-0050 ,CVE-2014-0925 ,CVE-2014-0160 ,CVE-2014-3010 ,CVE-2013-4286 ,CVE-2014-0033 ,CVE-2013-4322 and CVE-2013-4590.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-05-22

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT