First published: Mon Feb 03 2020(Updated: )
IBM Security Directory Server 6.4.0 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 165814.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Directory Server | >=6.4.0.0<6.4.0.20 | |
<=6.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-4541.
The severity level of CVE-2019-4541 is high with a CVSS score of 7.2.
The affected software is IBM Security Directory Server version 6.4.0.
This vulnerability allows attackers to bypass application controls, resulting in direct impact to the system and data integrity.
Yes, you can find additional information at the following links: [https://exchange.xforce.ibmcloud.com/vulnerabilities/165814](https://exchange.xforce.ibmcloud.com/vulnerabilities/165814) and [https://www.ibm.com/support/pages/node/1288660](https://www.ibm.com/support/pages/node/1288660).