CVE-2019-4072 - CVE House
Back to Database
Status published Medium CVE-2019-4072

IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition...

Vulnerability Description

IBM Tivoli Storage Productivity Center (IBM Spectrum Control Standard Edition 5.2.1 through 5.2.17) allows users to remain idle within the application even when a user has logged out. Utilizing the application back button users can remain logged in as the current user for a short period of time, therefore users are presented with information for Spectrum Control Application. IBM X-Force ID: 157064.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-4072

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Spectrum Control Standard Edition
Vulnerable Versions:
5.2.1, 5.2.8, 5.2.11, 5.2.12, 5.2.13, 5.2.14, 5.2.15, 5.2.16, 5.2.10.1, 5.2.15.2, 5.2.17.0, 5.2.17.1

Timeline

Official Publish: May 9th, 2019
Last Modified: September 17th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AC:L/S:U/AV:N/A:L/C:L/PR:H/UI:N/I:L/RC:C/RL:O/E:U

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.