CVE-2019-4520: IBM Security Directory Server

High severity, CVSS 7.5. EPSS: 2.2% chance of exploitation in the next 30 days.

IBM Security Directory Server 6.4.0 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 165178.

Affected products

  • IBM Security Directory Server: version 6.4.0 only

Published 2019-10-02. Last modified 2026-06-17.