IBM Support

IV07983: VULNERABILITY - HTTP METHOD DELETE ENABLED

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Security scans indicate vulnerability HTTP method DELETE
    enabled.
    

Local fix

Problem summary

  • Security scans indicate vulnerability HTTP method DELETE
    enabled.
    

Problem conclusion

  • Code has been changed to disable HTTP method DELETE.
    
    
    The fix for this APAR is contained in the following maintenance
    packages:
    
      | fix pack | 6.2.2-TIV-ITM-FP0008
      | fix pack | 6.2.3-TIV-ITM-FP0001
    

Temporary fix

Comments

APAR Information

  • APAR number

    IV07983

  • Reported component name

    TEMS

  • Reported component ID

    5724C04MS

  • Reported release

    622

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2011-09-19

  • Closed date

    2011-11-17

  • Last modified date

    2012-04-12

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

    OA39148

Fix information

  • Fixed component name

    TEMS

  • Fixed component ID

    5724C04MS

Applicable component levels

  • R622 PSY

       UP

[{"Line of Business":{"code":"LOB45","label":"Automation"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSTFXA","label":"Tivoli Monitoring"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"622"}]

Document Information

Modified date:
30 December 2022