CVE-2019-4381

IBM i 7.27.3 Clustering could allow a local attacker to obtain sensitive information, caused by the use of advanced node failure detection using the REST API to interface with the HMC. An attacker could exploit this vulnerability to obtain HMC credentials. IBM X-Force ID: 162159.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:ibm:i:7.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*

History

02 Mar 2023, 16:28

Type Values Removed Values Added
CVSS v2 : 2.1
v3 : 7.8
v2 : 2.1
v3 : 5.5
References (BID) http://www.securityfocus.com/bid/108808 - (BID) http://www.securityfocus.com/bid/108808 - Broken Link
References (CONFIRM) https://www.ibm.com/support/docview.wss?uid=ibm10887369 - Vendor Advisory (CONFIRM) https://www.ibm.com/support/docview.wss?uid=ibm10887369 - Patch, Vendor Advisory

Information

Published : 2019-06-14 15:29

Updated : 2023-12-10 12:59


NVD link : CVE-2019-4381

Mitre link : CVE-2019-4381

CVE.ORG link : CVE-2019-4381


JSON object : View

Products Affected

ibm

  • i
CWE
CWE-255

Credentials Management Errors