CVE-2019-4357 is a vulnerability in IBM Spectrum Protect Plus
Published on July 1, 2019
When using IBM Spectrum Protect Plus 10.1.0, 10.1.2, and 10.1.3 to protect Oracle, DB2 or MongoDB databases, a redirected restore operation specifying a target path may allow execution of arbitrary code on the system. IBM X-Force ID: 161667,
Products Associated with CVE-2019-4357
Want to know whenever a new CVE is published for IBM Spectrum Protect Plus? stack.watch will email you.
Affected Versions
IBM Spectrum Protect Plus:- Version 10.1.0 is affected.
- Version 10.1.2 is affected.
- Version 10.1.3 is affected.
Exploit Probability
EPSS
0.11%
Percentile
29.01%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.