CVE-2019-4225: Medium severity ibm pureapplication system vulnerability
Published Jun 26, 2019
·Updated
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 159242.
Affected Software
1 affected component
IBM PureApplication System>=2.2.3.0<=2.2.5.3
Remediation
Patch Available
Event History
Jun 26, 2019
CVE Published
via MITRE·02:35 PM
Data Sourced
via MITRE·02:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4225?
CVE-2019-4225 has been classified with moderate severity due to its potential exposure of sensitive information.
2
How do I fix CVE-2019-4225?
To fix CVE-2019-4225, update IBM PureApplication System to version 2.2.5.4 or later.
3
Who is affected by CVE-2019-4225?
Organizations using IBM PureApplication System versions between 2.2.3.0 and 2.2.5.3 are affected by CVE-2019-4225.
4
What type of information is exposed in CVE-2019-4225?
CVE-2019-4225 exposes potentially sensitive information that is stored in log files.
5
Is CVE-2019-4225 a remote or local vulnerability?
CVE-2019-4225 is a local vulnerability, as it requires access to the system to read the log files.