IBM WebSphere Message Broker Java Multiple Vulnerabilities
Last Update Date:
24 Jul 2013 12:43
Release Date:
24 Jul 2013
3868
Views
RISK: Medium Risk
TYPE: Servers - Other Servers
IBM has acknowledged multiple vulnerabilities in IBM WebSphere Message Broker, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to disclose certain sensitive information, manipulate certain data, cause a DoS (Denial of Service), and compromise a vulnerable system.
The application bundles a vulnerable version of Java.
Impact
- Denial of Service
- Elevation of Privilege
- Information Disclosure
- Data Manipulation
System / Technologies affected
- Versions 6.1, 7.0, and 8.0 on all platforms except IBM z/OS.
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply APAR
Vulnerability Identifier
- CVE-2013-0401
- CVE-2013-1491
- CVE-2013-1518
- CVE-2013-1537
- CVE-2013-1540
- CVE-2013-1557
- CVE-2013-1558
- CVE-2013-1563
- CVE-2013-1569
- CVE-2013-2383
- CVE-2013-2384
- CVE-2013-2394
- CVE-2013-2417
- CVE-2013-2418
- CVE-2013-2419
- CVE-2013-2420
- CVE-2013-2422
- CVE-2013-2424
- CVE-2013-2429
- CVE-2013-2430
- CVE-2013-2432
- CVE-2013-2433
- CVE-2013-2435
- CVE-2013-2440
Source
Related Link
Share with