Vulnerability Description
IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attackers to modify the syntax, content, or commands of the XML before it is processed by an end system. IBM X-Force ID: 165812.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Security Directory Server | 6.4.0 |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/165812VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/1077045PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/165812VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/1077045PatchVendor Advisory
FAQ
What is CVE-2019-4539?
CVE-2019-4539 is a vulnerability with a CVSS score of 7.1 (HIGH). IBM Security Directory Server 6.4.0 does not properly neutralize special elements that are used in XML, allowing attackers to modify the syntax, content, or commands of the XML before it is processed ...
How severe is CVE-2019-4539?
CVE-2019-4539 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-4539?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Security Directory Server.