CVE-2019-4058: Medium severity hcltech bigfix platform vulnerability
Published May 20, 2019
·Updated
IBM BigFix Platform 9.2 and 9.5 could allow a low-privilege user to manipulate the UI into exposing interface elements and information normally restricted to administrators. IBM X-Force ID: 156570.
Affected Software
2 affected components
IBM BigFix Platform>=9.2<=9.2.17
IBM BigFix Platform>=9.5<=9.5.12
Event History
May 20, 2019
CVE Published
via MITRE·05:25 PM
Data Sourced
via MITRE·05:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4058?
CVE-2019-4058 is considered a low-severity vulnerability.
2
How do I fix CVE-2019-4058?
To mitigate CVE-2019-4058, upgrade to IBM BigFix Platform versions 9.2.18 or later, and 9.5.13 or later.
3
What types of users are affected by CVE-2019-4058?
CVE-2019-4058 affects low-privilege users who can manipulate the UI.
4
What information can be exposed due to CVE-2019-4058?
CVE-2019-4058 could expose interface elements and information that are restricted to administrators.
5
Which versions of IBM BigFix Platform are affected by CVE-2019-4058?
CVE-2019-4058 affects IBM BigFix Platform versions 9.2 prior to 9.2.18 and 9.5 prior to 9.5.13.