CVE-2019-4539 Information
Feb 14, 2021
cve
Description
IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML allowing attackers to modify the syntax content or commands of the XML before it is processed by an end system. IBM X-Force ID: 165812.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
Reference
https://exchange.xforce.ibmcloud.com/vulnerabilities/165812 https://www.ibm.com/support/pages/node/1077045
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
LOW
Base Score
HIGH
Base Severity
7.1
Share on: