First published: Wed Jun 26 2019(Updated: )
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 159242.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM PureApplication System | >=2.2.3.0<=2.2.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4225 has been classified with moderate severity due to its potential exposure of sensitive information.
To fix CVE-2019-4225, update IBM PureApplication System to version 2.2.5.4 or later.
Organizations using IBM PureApplication System versions between 2.2.3.0 and 2.2.5.3 are affected by CVE-2019-4225.
CVE-2019-4225 exposes potentially sensitive information that is stored in log files.
CVE-2019-4225 is a local vulnerability, as it requires access to the system to read the log files.