PT-2020-17977 · Ibm · Ibm Security Information Queue

Chris Shepherd

+7

·

Published

2020-04-08

·

Updated

2020-04-08

·

CVE-2020-4290

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Security Information Queue (ISIQ) versions 1.0.0 through 1.0.5
Description The issue allows any authenticated user to spoof the configuration owner of any other user, potentially disclosing sensitive information or allowing for unauthorized access.
Recommendations For IBM Security Information Queue (ISIQ) versions 1.0.0 through 1.0.5, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Authentication Bypass by Spoofing

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-4290

Affected Products

Ibm Security Information Queue