cbcvebase.
CVE-2018-1885
published 2019-04-08

CVE-2018-1885: IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could allow an unauthenticated attacker to obtain sensitve information using a specially…

medium5.3CVSS 3.0
AVNACLPRNUINSUCLINAN
IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, and 18.0.0.2 could allow an unauthenticated attacker to obtain sensitve information using a specially cracted HTTP request. IBM X-Force ID: 152020.

Affected

12 ranges
VendorProductVersion rangeFixed in
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_automation_workflow
ibmbusiness_process_manager
ibmbusiness_process_manager
ibmbusiness_process_manager
ibmbusiness_process_manager
ibmbusiness_process_manager7.5.0.0 – 7.5.1.2
ibmbusiness_process_manager8.0.0.0 – 8.0.1.3
ibmbusiness_process_manager8.5.0.0 – 8.5.0.2
ibmbusiness_process_manager_enterprise_service_bus
ibmwebsphere_enterprise_service_bus7.0.0.0 – 7.5.1.2