PT-2019-16910 · Ibm · Ibm Spectrum Protect Operations Center

CVE-2019-4129

·

Publicado

2019-07-02

·

Atualizado

2022-12-09

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Spectrum Protect Operations Center versions 7.1 through 8.1
Description The issue allows a remote attacker to obtain sensitive information due to an error message containing a stack trace. By creating an error with a stack trace, an attacker could exploit this to potentially obtain details on the Operations Center architecture.
Recommendations For versions 7.1 through 8.1, consider disabling the display of detailed error messages as a temporary workaround until a patch is available. Restrict access to error messages containing stack traces to minimize the risk of exploitation.

Correção

Generation of Error Message Containing Sensitive Information

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-4129

Produtos afetados

Ibm Spectrum Protect Operations Center