CVE-2019-4235: High severity ibm pureapplication system vulnerability
Published Jun 26, 2019
·Updated
IBM PureApplication System 2.2.3.0 through 2.2.5.3 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 159417.
Affected Software
1 affected component
IBM PureApplication System>=2.2.3.0<=2.2.5.3
Remediation
Patch Available
Event History
Jun 26, 2019
CVE Published
via MITRE·02:35 PM
Data Sourced
via MITRE·02:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4235?
CVE-2019-4235 is considered a medium severity vulnerability due to weak password requirements.
2
How do I fix CVE-2019-4235?
To fix CVE-2019-4235, implement strong password policies and ensure users set complex passwords.
3
Which versions of IBM PureApplication System are affected by CVE-2019-4235?
CVE-2019-4235 affects IBM PureApplication System versions from 2.2.3.0 to 2.2.5.3.
4
What are the risks associated with CVE-2019-4235?
The risks include potential unauthorized access to user accounts due to weak passwords.
5
Is there a patch available for CVE-2019-4235?
IBM has not explicitly issued a patch for CVE-2019-4235, but security best practices should be followed.