CVE-2019-4220: Medium severity ibm infosphere information server vulnerability
Published Jun 6, 2019
·Updated
IBM InfoSphere Information Server 11.7.1.0 stores a common hard coded encryption key that could be used to decrypt sensitive information. IBM X-Force ID: 159229.
Affected Software
2 affected components
IBM Infosphere Information Server On Cloud=11.7.1.0
IBM Watson Knowledge Catalog=11.7.1.0
Event History
Jun 6, 2019
CVE Published
via MITRE·12:35 AM
Data Sourced
via MITRE·12:35 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4220?
The severity of CVE-2019-4220 is medium.
2
What is the vulnerability description of CVE-2019-4220?
CVE-2019-4220 is a vulnerability in IBM InfoSphere Information Server 11.7.1.0 that stores a common hard-coded encryption key, which could be used to decrypt sensitive information.
3
Which software versions are affected by CVE-2019-4220?
IBM InfoSphere Information Server 11.7.1.0, IBM InfoSphere Information Server on Cloud 11.7.1.0, and IBM Watson Knowledge Catalog 11.7.1.0 are affected by CVE-2019-4220.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2019-4220?
The Common Weakness Enumeration (CWE) ID for CVE-2019-4220 is 798.
5
How can I fix the vulnerability in IBM InfoSphere Information Server 11.7.1.0?
To fix the vulnerability in IBM InfoSphere Information Server 11.7.1.0, apply the recommended patches or updates provided by IBM.