PT-2018-13942 · Ibm · Ibm Websphere Application Server
Published
2018-09-14
·
Updated
2020-08-24
·
CVE-2018-1719
CVSS v3.1
5.9
Medium
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere Application Server versions 8.5 through 9.0
Description
The issue could result in a downgrade of the TLS protocol, potentially allowing a remote attacker to perform man-in-the-middle attacks under certain conditions.
Recommendations
For IBM WebSphere Application Server versions 8.5 through 9.0, update the TLS protocol configuration to prevent downgrades and ensure secure connections.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Websphere Application Server