PT-2019-17051 · Oracle+2 · Oracle+2

Published

2019-07-01

·

Updated

2023-01-31

·

CVE-2019-4383

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM Spectrum Protect Plus versions 10.1.0 through 10.1.3
Description The issue concerns an escalation of user privileges that may occur during a redirected restore operation when protecting Oracle or MongoDB databases.
Recommendations For versions 10.1.0 through 10.1.3, consider restricting access to the restore operation functionality until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2019-4383

Affected Products

Ibm Spectrum Protect Plus
Mongodb
Oracle