Unauthorized File Download Vulnerability in IBM Daeja ViewONE Products
CVE-2019-4260
5.3MEDIUM
Summary
The vulnerability in IBM Daeja ViewONE Professional, Standard, and Virtual versions 5.0 through 5.0.5 enables unauthorized users to download server files. This flaw can potentially lead to the exposure of sensitive information, posing significant risks to data integrity and confidentiality. Organizations using these versions should assess their exposure and consider implementing necessary security measures to mitigate this threat.
Affected Version(s)
Daeja ViewONE 5.0
Daeja ViewONE 5.0.2
Daeja ViewONE 5.0.1
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved