CVE-2019-4118

EUVD-2019-13725
IBM Multicloud Manager 3.1.0, 3.1.1, and 3.1.2 ibm-mcm-chart could allow a local attacker with admin privileges to obtain highly sensitive information upon deployment. IBM X-Force ID: 158144.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.4 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
ibmCNA
4.4 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.0/A:N/UI:N/AC:L/C:H/AV:L/I:N/PR:H/S:U/RL:O/RC:C/E:U
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
Affected Products (NVD)
VendorProductVersion
ibmmulticloud_manager
3.1.0
ibmmulticloud_manager
3.1.1
ibmmulticloud_manager
3.1.2
𝑥
= Vulnerable software versions