PT-2020-17912 · Ibm · Ibm Tivoli Netcool/Omnibus Gui

Published

2020-03-03

·

Updated

2020-03-03

·

CVE-2020-4197

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Tivoli Netcool/OMNIbus GUI version 8.1.0
Description The issue allows web pages to be stored locally, which can then be read by another user on the system.
Recommendations For IBM Tivoli Netcool/OMNIbus GUI version 8.1.0, consider restricting access to sensitive web pages or implementing additional access controls to minimize the risk of unauthorized data access. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Insecure Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-4197

Affected Products

Ibm Tivoli Netcool/Omnibus Gui