SB2024052834 - Permissions, privileges, and access controls in IBM InfoSphere Information Server



SB2024052834 - Permissions, privileges, and access controls in IBM InfoSphere Information Server

Published: May 28, 2024

Security Bulletin ID SB2024052834
Severity
High
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Adjecent network
Highest impact Code execution

Breakdown by Severity

High 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Permissions, Privileges, and Access Controls (CVE-ID: CVE-2019-4185)

The vulnerability allows adjacent user to escalate privileges on the system.

The vulnerability exists due to insecurely configured component. An adjacent user can bypass security restrictions and escalate privileges on the system.


Remediation

Install update from vendor's website.