CVE-2017-1418: IBM Integration Bus

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Integration Bus 9.0.0.0, 9.0.0.11, 10.0.0.0, and 10.0.0.14 (including IBM WebSphere Message Broker 8.0.0.0 and 8.0.0.9) has insecure permissions on certain files. A local attacker could exploit this vulnerability to modify or delete these files with an unknown impact. IBM X-Force ID: 127406.

Affected products

  • IBM Integration Bus: from 9.0.0.0, up to and including 9.0.0.11; from 10.0.0.0, up to and including 10.0.0.14
  • IBM WebSphere Message Broker: from 8.0.0.0, up to and including 8.0.0.9

Published 2018-11-26. Last modified 2026-06-17.