cbcvebase.
CVE-2019-4072
published 2019-05-09

CVE-2019-4072: IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) allows users to remain idle within the application even…

medium6.3CVSS 3.1
AVNACLPRLUINSUCLILAL
IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) allows users to remain idle within the application even when a user has logged out. Utilizing the application back button users can remain logged in as the current user for a short period of time, therefore users are presented with information for Spectrum Control Application. IBM X-Force ID: 157064.

Affected

15 ranges
VendorProductVersion rangeFixed in
ibmspectrum_control5.2.8 – 5.2.17.2
ibmspectrum_control5.3.0 – 5.3.1
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmspectrum_control_standard_edition
ibmtivoli_storage_productivity_center5.2.0 – 5.2.7.1