CVE-2019-4520: High severity IBM Security Directory Server vulnerability
Published Oct 2, 2019
·Updated
IBM Security Directory Server 6.4.0 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 165178.
Affected Software
1 affected component
IBM Security Directory Server=6.4.0
Remediation
Patch Available
Event History
Oct 2, 2019
CVE Published
via MITRE·02:45 PM
Data Sourced
via MITRE·02:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this IBM Security Directory Server issue?
The vulnerability ID for this issue is CVE-2019-4520.
2
What is the severity level of CVE-2019-4520?
The severity level of CVE-2019-4520 is high.
3
How does this vulnerability affect IBM Security Directory Server 6.4.0?
IBM Security Directory Server 6.4.0 is affected by this vulnerability.
4
What is the potential impact of this vulnerability?
This vulnerability could allow a remote attacker to brute force account credentials.
5
What is the recommended remediation for this vulnerability?
IBM recommends following the instructions provided in their official support documentation to mitigate this vulnerability.