CVE-2019-4703: Medium severity IBM Spectrum Protect Plus vulnerability
IBM Spectrum Protect Plus 10.1.0 and 10.5.0, when protecting Microsoft SQL or Microsoft Exchange, could allow an attacker with intimate knowledge of the system to obtain highly sensitive information.
Other sources
IBM Spectrum Protect Plus, when protecting Microsoft SQL or Microsoft Exchange, could allow an attacker with intimate knowledge of the system to obtain highly sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID for this issue is CVE-2019-4703.
What is the severity of CVE-2019-4703?
The severity of CVE-2019-4703 is medium with a CVSS score of 5.3.
What software versions are affected by CVE-2019-4703?
IBM Spectrum Protect Plus versions 10.1.0 to 10.1.5 are affected by CVE-2019-4703.
How can an attacker exploit this vulnerability?
An attacker with intimate knowledge of the system can exploit this vulnerability to obtain highly sensitive information when protecting Microsoft SQL or Microsoft Exchange with IBM Spectrum Protect Plus.
Where can I find more information about CVE-2019-4703?
More information about CVE-2019-4703 can be found at the following references: [Link 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/172013), [Link 2](https://www.ibm.com/support/pages/node/3177915).