CVE Database · CVE-2019-4013
CVSS v3.1
N/A
EPSS
13.86%
Published
Apr 10, 2019
Modified
Nov 21, 2024
Public PoC / Exploit (2)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
IBM BigFix Platform 9.5 could allow any authenticated user to upload any file to any location on the server with root privileges. This results in code execution on underlying system with root privileges. IBM X-Force ID: 155887.
Weaknesses (CWE)
Affected Products (1)
References (6)