Security Bulletin: IBM WebSphere Application Server Liberty for IBM i is vulnerable to a server-side request forgery, a denial of service, an attacker obtaining sensitive information, and gaining elevated privileges due to multiple vulnerabilities.

​IBM WebSphere Application Server for IBM i is vulnerable to a server-side request forgery due to a flaw in parsing the href attribute (CVE-2022-46364), and is affected by an attacker obtaining sensitive information due to improper permissions on a temporary file (CVE-2022-45787), attacker gaining elevated privileges due to an insecure temp file (CVE-2023-0482), and a denial of service due to not limiting the file upload request function (CVE-2023-24998) as described in the vulnerability details section. IBM WebSphere Application Server Liberty for IBM i has addressed the vulnerabilities with a fix as described in the remediation/fixes section. Read More 

A Note from the Chairman Mike Ryan

​Well, if we thought that 2022 was a whirlwind – that saw much of business come back together and saw i-UG really step up to the mark in trying to keep the information flowing – then 2023 is going to need a whole new weather warning! 2022 was a great year. We had some great
The post A Note from the Chairman appeared first on PowerWire.eu. Read More 

Presentations in May 2023 Simon Hutchinson

​This is going to be a quiet month. I have no speaking events scheduled for this month, but we do have a meeting of the Central Texas IBM i User Group:

Tuesday May 16 @ 6:30 AM (CDT) Central Texas IBM i User Group welcomes Jim Buck, long time IBM Champion and teacher: RPG, MVC Architecture and Modernization. On-line, open to everyone.

If you are a member of a LUG and you would like me to talk to your group, use the contact form to reach me. We can then arrange a date and subject.
If you are a member of a LUG that is not listed on my LUG page, please contact me and send me your group’s details. Read More 

Verified by MonsterInsights