← back
CVE-2019-4234

CVE-2019-4234

CVSS 4.3 MEDIUMEPSS 0.9%
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.9%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
26 Jun 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM PureApplication System 2.2.3.0 through 2.2.5.3 weakness in the implementation of locking feature in pattern editor. An attacker by intercepting the subsequent requests can bypass business logic to modify the pattern to unlocked state. IBM X-Force ID: 159416.
CVSS:3.0/C:N/AV:N/S:U/PR:L/A:N/AC:L/I:L/UI:N/RC:C/E:U/RL:O