First published: Mon Sep 30 2019(Updated: )
IBM WebSphere Application Server - Liberty could allow a remote attacker to bypass security restrictions caused by improper session validation.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere Application Server | <19.0.0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4304 is classified as a high-severity vulnerability due to its potential to allow unauthorized access.
To mitigate CVE-2019-4304, upgrade to IBM WebSphere Application Server Liberty version 19.0.0.10 or later.
CVE-2019-4304 affects users of IBM WebSphere Application Server - Liberty versions prior to 19.0.0.10.
CVE-2019-4304 is a remote session validation vulnerability that can be exploited to bypass security restrictions.
Yes, CVE-2019-4304 can be exploited by remote attackers to gain unauthorized access.