Show filters
45 Total Results
Displaying 41-45 of 45
Sort by:
Attacker Value
Unknown

CVE-2019-4652

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.0 through 10.1.4 uses insecure file permissions on restored files and directories in Windows which could allow a local user to obtain sensitive information or perform unauthorized actions. IBM X-Force ID: 170963.
Attacker Value
Unknown

CVE-2019-4357

Disclosure Date: July 01, 2019 (last updated November 27, 2024)
When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle, DB2 or MongoDB databases, a redirected restore operation specifying a target path may allow execution of arbitrary code on the system. IBM X-Force ID: 161667,
Attacker Value
Unknown

CVE-2019-4383

Disclosure Date: July 01, 2019 (last updated November 27, 2024)
When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle or MongoDB databases, a redirected restore operation may result in an escalation of user privileges. IBM X-Force ID: 162165.
Attacker Value
Unknown

CVE-2019-4385

Disclosure Date: June 19, 2019 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.2 may display the vSnap CIFS password in the IBM Spectrum Protect Plus Joblog. This can result in an attacker gaining access to sensitive information as well as vSnap. IBM X-Force ID: 162173.
Attacker Value
Unknown

CVE-2018-1768

Disclosure Date: September 26, 2018 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.0 and 10.1.1 could disclose sensitive information when an authorized user executes a test operation, the user id an password may be displayed in plain text within an instrumentation log file. IBM X-Force ID: 148622.
0