Rewterz
Rewterz Threat Alert – SNAKE Ransomware – Active IOCs
June 14, 2021
Rewterz
Rewterz Threat Advisory – CVE-2021-30762; CVE-2021-30761 – Multiple Apple iOS and iPadOS Vulnerabilities
June 15, 2021

Rewterz Threat Advisory – CVE-2021-29754 – IBM WebSphere Application Server Vulnerability

Severity

Medium

Analysis Summary

CVE-2021-29754

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a privilege escalation vulnerability when using the SAML Web Inbound Trust Association Interceptor (TAI).

Impact

  • Unauthorized Access

Affected Vendors

IBM

Affected Products

  • IBM WebSphere Application Server 7.0
  • IBM WebSphere Application Server 8.0
  • IBM WebSphere Application Server 8.5
  • IBM WebSphere Application Server 9.0

Remediation

Refer to IBM Security Bulletin for patch, upgrade or suggested workaround information.

https://www.ibm.com/blogs/psirt/security-bulletin-websphere-application-server-is-vulnerable-to-a-privilege-escalation-vulnerability-cve-2021-29754/