IBM Support

OMS/CPQ Security fix released because of Apache Struts 2 vulnerabilities

Technical Blog Post


Abstract

OMS/CPQ Security fix released because of Apache Struts 2 vulnerabilities

Body

We are blogging to inform you of a recently discovered security vulnerability because of Apache Struts 2. IBM takes security vulnerability very seriously. IBM released the Security Fixpack in each version that we support. Also we have posted a technote related to the Fixpack information and also the vulnerability details.

The link to technote is: http://www-01.ibm.com/support/docview.wss?uid=swg21663496

If you are using any one of the following versions, Please make sure to update your systems immediately.

Sterling Order Management 8.5
IBM Sterling Selling and Fulfillment Foundation 9.0
IBM Sterling Selling and Fulfillment Foundation 9.1.0
IBM Sterling Selling and Fulfillment Foundation 9.2.0
IBM Sterling Selling and Fulfillment Foundation 9.2.1
IBM Sterling Field Sales 9.0
IBM Sterling Field Sales 9.1.0
IBM Sterling Field Sales 9.2.0
IBM Sterling Field Sales 9.2.1

Thanks
IBM-Sterling Support.
 

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SS6PEW","label":"Sterling Order Management"},"Component":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}},{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SS6PEW","label":"Sterling Order Management"},"Component":"","Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"","Edition":"","Line of Business":{"code":"LOB59","label":"Sustainability Software"}}]

UID

ibm11125039