IBM PureApplication System 2.2.3.0 through 2.2.5.3 weakness in the implementation of locking feature in pattern editor. An attacker by intercepting the subsequent requests can bypass business logic to modify the pattern to unlocked state. IBM X-Force ID: 159416.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/159416 | VDB Entry Vendor Advisory |
https://www-01.ibm.com/support/docview.wss?uid=ibm10885602 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/159416 | VDB Entry Vendor Advisory |
https://www-01.ibm.com/support/docview.wss?uid=ibm10885602 | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 04:43
Type | Values Removed | Values Added |
---|---|---|
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/159416 - VDB Entry, Vendor Advisory | |
References | () https://www-01.ibm.com/support/docview.wss?uid=ibm10885602 - Patch, Vendor Advisory |
Information
Published : 2019-06-26 15:15
Updated : 2024-11-21 04:43
NVD link : CVE-2019-4234
Mitre link : CVE-2019-4234
CVE.ORG link : CVE-2019-4234
JSON object : View
Products Affected
ibm
- pureapplication_system
CWE