CVE-2019-4140: Infoleak
Published Jul 2, 2019
·Updated
IBM Tivoli Storage Manager Server (IBM Spectrum Protect 7.1 and 8.1) could allow a local user to replace existing databases by restoring old data. IBM X-Force ID: 158336.
Affected Software
2 affected components
IBM Spectrum Protect>=7.1.0.0<7.1.9.300
IBM Spectrum Protect>=8.1.0.0<8.1.8.0
Remediation
Patch Available
Event History
Jul 2, 2019
CVE Published
via MITRE·03:05 PM
Data Sourced
via MITRE·03:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-4140.
2
What is the severity level of IBM Tivoli Storage Manager Server vulnerability (CVE-2019-4140)?
The severity level of this vulnerability is high with a score of 7.1.
3
Who can exploit IBM Tivoli Storage Manager Server vulnerability (CVE-2019-4140)?
A local user can exploit this vulnerability.
4
What could a local user do if they exploit IBM Tivoli Storage Manager Server vulnerability (CVE-2019-4140)?
A local user can replace existing databases by restoring old data.
5
Are there any fixes or patches available for IBM Tivoli Storage Manager Server vulnerability (CVE-2019-4140)?
Yes, IBM has provided fixes and patches to address this vulnerability. Please refer to the IBM support website for more information.