VulnerabilityModified
CVE-2019-4420
IBM Intelligent Operations Center V5.1.0 through V5.2.0 could disclose detailed error messages, revealing sensitive information that could aid in further attacks against the system.
MEDIUM 6.2EPSS 0.39%
Does this matter?
Lower severity and a low EPSS score (0.39%). Track it; it rarely justifies an emergency change on its own.
Description
IBM Intelligent Operations Center V5.1.0 through V5.2.0 could disclose detailed error messages, revealing sensitive information that could aid in further attacks against the system. IBM X-Force ID: 162738.
- CVSS 3.1
- 6.2 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.39% probability · 33th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-209
- Affected
- ibm/intelligent operations center · ibm/intelligent operations center for emergency management · ibm/water operations for waternamics
- Source
- psirt@us.ibm.com
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/162738VDB Entry, Vendor Advisory
- https://www.ibm.com/support/docview.wss?uid=ibm10956429Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/162738VDB Entry, Vendor Advisory
- https://www.ibm.com/support/docview.wss?uid=ibm10956429Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.