Show filters
45 Total Results
Displaying 41-45 of 45
Sort by:
Attacker Value
Unknown
CVE-2019-4652
Disclosure Date: November 12, 2019 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.0 through 10.1.4 uses insecure file permissions on restored files and directories in Windows which could allow a local user to obtain sensitive information or perform unauthorized actions. IBM X-Force ID: 170963.
0
Attacker Value
Unknown
CVE-2019-4357
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle, DB2 or MongoDB databases, a redirected restore operation specifying a target path may allow execution of arbitrary code on the system. IBM X-Force ID: 161667,
0
Attacker Value
Unknown
CVE-2019-4383
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle or MongoDB databases, a redirected restore operation may result in an escalation of user privileges. IBM X-Force ID: 162165.
0
Attacker Value
Unknown
CVE-2019-4385
Disclosure Date: June 19, 2019 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.2 may display the vSnap CIFS password in the IBM Spectrum Protect Plus Joblog. This can result in an attacker gaining access to sensitive information as well as vSnap. IBM X-Force ID: 162173.
0
Attacker Value
Unknown
CVE-2018-1768
Disclosure Date: September 26, 2018 (last updated November 27, 2024)
IBM Spectrum Protect Plus 10.1.0 and 10.1.1 could disclose sensitive information when an authorized user executes a test operation, the user id an password may be displayed in plain text within an instrumentation log file. IBM X-Force ID: 148622.
0