Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-4381

Опубликовано: 14 июн. 2019
Источник: nvd
CVSS3: 5.9
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

IBM i 7.27.3 Clustering could allow a local attacker to obtain sensitive information, caused by the use of advanced node failure detection using the REST API to interface with the HMC. An attacker could exploit this vulnerability to obtain HMC credentials. IBM X-Force ID: 162159.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:ibm:i:7.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:7.3:*:*:*:*:*:*:*

EPSS

Процентиль: 17%
0.00052
Низкий

5.9 Medium

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-255

Связанные уязвимости

CVSS3: 5.5
github
больше 3 лет назад

IBM i 7.27.3 Clustering could allow a local attacker to obtain sensitive information, caused by the use of advanced node failure detection using the REST API to interface with the HMC. An attacker could exploit this vulnerability to obtain HMC credentials. IBM X-Force ID: 162159.

EPSS

Процентиль: 17%
0.00052
Низкий

5.9 Medium

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-255