#VU16531 Remote code execution in IBM WebSphere Application Server - CVE-2018-1904
Published: December 10, 2018 / Updated: December 13, 2018
IBM WebSphere Application Server
IBM Corporation
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to unspecified flaw. A remote unauthenticated attacker can execute arbitrary Java code through an administrative client class with a serialized object from untrusted sources.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.