First published: Tue Jul 02 2019(Updated: )
IBM Security Guardium 10.5 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable web server. IBM X-Force ID: 160698.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | =10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4292 has a high severity rating due to its potential for remote code execution.
To fix CVE-2019-4292, it is recommended to apply the latest security patches provided by IBM for version 10.5.
CVE-2019-4292 affects IBM Security Guardium version 10.5 specifically.
CVE-2019-4292 allows remote attackers to upload arbitrary files, which can lead to arbitrary code execution.
There have been reports indicating that CVE-2019-4292 may be actively exploited in the wild.