7.2
CVSSv2

CVE-2019-4357

Published: 01/07/2019 Updated: 02/12/2022
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.7 | Impact Score: 5.9 | Exploitability Score: 0.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle, DB2 or MongoDB databases, a redirected restore operation specifying a target path may allow execution of arbitrary code on the system. IBM X-Force ID: 161667,

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm spectrum protect plus 10.1.1

ibm spectrum protect plus 10.1.3

ibm spectrum protect plus 10.1.2