PT-2020-18172 · Ibm · Ibm Cloud Pak For Security

Published

2020-11-30

·

Updated

2021-07-21

·

CVE-2020-4626

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Cloud Pak for Security version 1.3.0.1
Description The issue could reveal sensitive information about the internal network to an authenticated user using a specially crafted HTTP request.
Recommendations For IBM Cloud Pak for Security version 1.3.0.1, consider restricting access to sensitive network information until a patch is available. As a temporary workaround, limit the use of specially crafted HTTP requests to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-4626

Affected Products

Ibm Cloud Pak For Security