First published: Wed Feb 12 2020(Updated: )
IBM Content Navigator 3.0CD is vulnerable to Server Side Request Forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 172815.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Content Navigator | =3.0.0 | |
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
<=3.0CD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-4741.
The severity of CVE-2019-4741 is medium with a CVSS score of 5.3.
Server Side Request Forgery (SSRF) is a vulnerability that allows an attacker to make requests to other internal or external resources on behalf of a vulnerable server.
The vulnerability CVE-2019-4741 allows an unauthenticated attacker to send unauthorized requests from IBM Content Navigator, potentially leading to network enumeration or facilitating other attacks.
To fix the vulnerability CVE-2019-4741 in IBM Content Navigator, it is recommended to apply the necessary security patches or updates provided by IBM.