CVE-2019-4329
CVE-2019-4329
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
28 Oct 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Security Guardium Big Data Intelligence (SonarG) 4.0 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 161209.
CVSS:3.0/AV:N/C:N/UI:N/A:N/AC:L/S:U/PR:L/I:L/RC:C/RL:O/E:U
Affected products
IBM · Security Guardium Big Data Intelligence