The WebSphere Application Server must remove organization-defined software components after updated versions have been installed.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
|---|---|---|---|---|---|---|
| medium | V-255891 | SRG-APP-000454-AS-000268 | WBSP-AS-001740 | SV-255891r961677_rule | 2026-02-26 | 2 |
Description
By default, when updating WebSphere application server, the older version of binaries are saved in case a "roll back" is necessary. Not keeping the older version makes it more difficult for attackers to "revert" back to the older version.
ℹ️ Check
Review System Security Plan and system documentation to locate the "IBM InstallationManager" folder.
Default locations are:
UNIX:
/opt/InstallationManager
Windows:
C:\Program Files\InstallationManager
UNIX:
<IMHOME>/eclipse/tools/imcl -c
Select "P" preferences.
Select "3" Files for rollback.
Windows:
<IMHOME>\eclipse\tools\imcl.exe -c
Select "P" preferences.
Select "3" Files for rollback.
If "Save files for rollback" is checked, this is a finding.
✔️ Fix
Review System Security Plan and system documentation to locate the "IBM InstallationManager" folder.
Default locations are:
UNIX:
/opt/InstallationManager
Windows:
C:\Program Files\InstallationManager
UNIX:
<IMHOME>/eclipse/tools/imcl -c
Select "P" preferences.
Select "3" Files for rollback.
Enter "1" to deselect.
Enter "A" for apply.
Enter "R" to return to Main Menu.
Windows:
<IMHOME>\eclipse\tools\imcl.exe -c
Select "P" preferences.
Select "3" Files for rollback.
Enter "1" to deselect.
Enter "A" for apply.
Enter "R" to return to Main Menu.