Lucene search

K
ibmIBMDCCCB38CEC56217A08C605DD6DDD4ECBE35C39A22AF7D41B10748D62BD1EC1F1
HistoryJul 01, 2019 - 10:30 p.m.

Security Bulletin:IBM Content Navigator is affected by a local file inclusion vulnerability

2019-07-0122:30:01
www.ibm.com
8

0.0005 Low

EPSS

Percentile

17.9%

Summary

IBM Content Navigator has addressed the following vulnerability.

Vulnerability Details

CVEID:CVE-2019-4263
**DESCRIPTION:*IBM Content Navigator is vulnerable to local file inclusion vulnerablity, allowing an attacker to access a configuration file in the ICN server.
CVSS Base Score: 4.3
CVSS Temporal Score: See <https://exchange.xforce.ibmcloud.com/vulnerabilities/160015&gt; for the current score
CVSS Environmental Score
: Undefined
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

Affected IBM Content Navigator Affected Versions
IBM Content Navigator 3.0CD

Remediation/Fixes

Product VRMF Remediation / First Fix
IBM Content Navigator 3.0 Continuous Delivery 3.0.4 IF7 and above, 3.0.5 IF4 and above

Workarounds and Mitigations

None.

CPENameOperatorVersion
ibm content navigatoreqany

0.0005 Low

EPSS

Percentile

17.9%

Related for DCCCB38CEC56217A08C605DD6DDD4ECBE35C39A22AF7D41B10748D62BD1EC1F1