PT-2019-16910 · Ibm · Ibm Spectrum Protect Operations Center
CVE-2019-4129
·
Publicado
2019-07-02
·
Atualizado
2022-12-09
CVSS v3.1
5.3
Média
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Spectrum Protect Operations Center versions 7.1 through 8.1
Description
The issue allows a remote attacker to obtain sensitive information due to an error message containing a stack trace. By creating an error with a stack trace, an attacker could exploit this to potentially obtain details on the Operations Center architecture.
Recommendations
For versions 7.1 through 8.1, consider disabling the display of detailed error messages as a temporary workaround until a patch is available. Restrict access to error messages containing stack traces to minimize the risk of exploitation.
Correção
Generation of Error Message Containing Sensitive Information
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Spectrum Protect Operations Center