PT-2021-12229 · Ibm · Ibm Cloud Pak System
Published
2021-01-04
·
Updated
2021-07-21
·
CVE-2020-4913
CVSS v3.1
4.4
Medium
| Vector | C:H/S:U/AC:L/UI:N/I:N/PR:H/AV:L/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Cloud Pak System version 2.3
Description
The issue could reveal credential information in the HTTP response to a local privileged user.
Recommendations
For IBM Cloud Pak System version 2.3, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Cloud Pak System