Medium severity4.3NVD Advisory· Published Aug 20, 2019· Updated Jun 17, 2026
CVE-2019-4485
CVE-2019-4485
Description
IBM Emptoris Sourcing 10.1.0 through 10.1.3, IBM Contract Management 10.1.0 through 10.1.3, and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 generates an error message that includes sensitive information that could be used in further attacks against the system. IBM X-Force ID: 164069.
Affected products
9cpe:2.3:a:ibm:emptoris_contract_management:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:ibm:emptoris_contract_management:*:*:*:*:*:*:*:*range: >=10.1.0,<=10.1.3
- (no CPE)range: 10.1.0
cpe:2.3:a:ibm:emptoris_sourcing:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:emptoris_sourcing:*:*:*:*:*:*:*:*range: >=10.1.0,<=10.1.3
- (no CPE)range: 10.1.0 - 10.1.3
- (no CPE)range: 10.1.0
cpe:2.3:a:ibm:emptoris_spend_analysis:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:emptoris_spend_analysis:*:*:*:*:*:*:*:*range: >=10.1.0,<=10.1.3
- (no CPE)range: 10.1.0 - 10.1.3
- (no CPE)range: 10.1.0
- Range: 10.1.0 - 10.1.3
Patches
Vulnerability mechanics
References
2- exchange.xforce.ibmcloud.com/vulnerabilities/164069nvdVDB EntryVendor Advisory
- www.ibm.com/support/docview.wssnvdVendor Advisory
News mentions
0No linked articles in our index yet.