CVE-2018-1999

IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system. IBM X-Force ID: 154889.

Published date
2019-04-08T15:29Z
Last modification date
2019-10-09T23:39Z
Assigner
psirt@us.ibm.com
Problem type
CWE-200

Impact

CVSS v3 vector string
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
NameURLSourceTags
https://www.ibm.com/support/docview.wss?uid=ibm10870502https://www.ibm.com/support/docview.wss?uid=ibm10870502CONFIRMPatch, Vendor Advisory
ibm-bpm-cve20181999-info-disc (154889)https://exchange.xforce.ibmcloud.com/vulnerabilities/154889XFVendor Advisory, VDB Entry