CVE-2019-4561: IBM Security Identity Manager

High severity, CVSS 8.8. EPSS: 3.6% chance of exploitation in the next 30 days.

IBM Security Identity Manager 6.0.0 could allow a remote attacker to execute arbitrary code on the system, caused by the deserialization of untrusted data. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 166456.

Affected products

  • IBM Security Identity Manager: version 6.0.0 only

Published 2019-11-20. Last modified 2026-06-17.