IBM i 7.27.3 Clustering could allow a local attacker to obtain sensitive information, caused by the use of advanced node failure detection using the REST API to interface with the HMC. An attacker could exploit this vulnerability to obtain HMC credentials. IBM X-Force ID: 162159.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/108808 | Broken Link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/162159 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/docview.wss?uid=ibm10887369 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/108808 | Broken Link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/162159 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/docview.wss?uid=ibm10887369 | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 04:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/108808 - Broken Link | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/162159 - VDB Entry, Vendor Advisory | |
References | () https://www.ibm.com/support/docview.wss?uid=ibm10887369 - Patch, Vendor Advisory |
02 Mar 2023, 16:28
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 2.1
v3 : 5.5 |
References | (CONFIRM) https://www.ibm.com/support/docview.wss?uid=ibm10887369 - Patch, Vendor Advisory | |
References | (BID) http://www.securityfocus.com/bid/108808 - Broken Link |
Information
Published : 2019-06-14 15:29
Updated : 2024-11-21 04:43
NVD link : CVE-2019-4381
Mitre link : CVE-2019-4381
CVE.ORG link : CVE-2019-4381
JSON object : View
Products Affected
ibm
- i
CWE
CWE-255
Credentials Management Errors