STIGQter STIGQter: STIG Summary: IBM WebSphere Traditional V9.x Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 23 Aug 2018:

The WebSphere Application Server must remove organization-defined software components after updated versions have been installed.

DISA Rule

SV-96111r1_rule

Vulnerability Number

V-81397

Group Title

SRG-APP-000454-AS-000268

Rule Version

WBSP-AS-001740

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Review System Security Plan and system documentation to locate the "IBM InstallationManager" folder.

Default locations are:
UNIX:
/opt/InstallationManager

Windows:
C:\Program Files\InstallationManager

UNIX:
<IMHOME>/eclipse/tools/imcl -c

Select "P" preferences.
Select "3" Files for rollback.
Enter "1" to deselect.
Enter "A" for apply.
Enter "R" to return to Main Menu.

Windows:
<IMHOME>\eclipse\tools\imcl.exe -c

Select "P" preferences.
Select "3" Files for rollback.
Enter "1" to deselect.
Enter "A" for apply.
Enter "R" to return to Main Menu.

Check Contents

Review System Security Plan and system documentation to locate the "IBM InstallationManager" folder.

Default locations are:
UNIX:
/opt/InstallationManager

Windows:
C:\Program Files\InstallationManager

UNIX:
<IMHOME>/eclipse/tools/imcl -c

Select "P" preferences.
Select "3" Files for rollback.

Windows:
<IMHOME>\eclipse\tools\imcl.exe -c

Select "P" preferences.
Select "3" Files for rollback.

If "Save files for rollback" is checked, this is a finding.

Vulnerability Number

V-81397

Documentable

False

Rule Version

WBSP-AS-001740

Severity Override Guidance

Review System Security Plan and system documentation to locate the "IBM InstallationManager" folder.

Default locations are:
UNIX:
/opt/InstallationManager

Windows:
C:\Program Files\InstallationManager

UNIX:
<IMHOME>/eclipse/tools/imcl -c

Select "P" preferences.
Select "3" Files for rollback.

Windows:
<IMHOME>\eclipse\tools\imcl.exe -c

Select "P" preferences.
Select "3" Files for rollback.

If "Save files for rollback" is checked, this is a finding.

Check Content Reference

M

Target Key

3399

Comments