IBM PureApplication System 2.2.3.0 through 2.2.5.3 weakness in the implementation of locking feature in pattern editor. An attacker by intercepting the subsequent requests can bypass business logic to modify the pattern to unlocked state. IBM X-Force ID: 159416.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/159416 | VDB Entry Vendor Advisory |
https://www-01.ibm.com/support/docview.wss?uid=ibm10885602 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2019-05-31T00:00:00
Updated: 2019-06-26T14:35:17
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-4234
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-06-26T15:15:10.043
Modified: 2022-12-02T19:44:59.380
Link: CVE-2019-4234
JSON object: View
Redhat Information
No data.
CWE