PT-2021-13987 · Ibm · Ibm Cloud Pak For Data

Published

2021-05-26

·

Updated

2021-06-02

·

CVE-2021-20486

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: IBM Cloud Pak for Data version 3.0
Description: The issue allows an authenticated user to obtain sensitive information when IBM Cloud Pak for Data is installed with additional plugins.
Recommendations: For IBM Cloud Pak for Data version 3.0, consider removing or disabling the additional plugins until a fix is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-20486

Affected Products

Ibm Cloud Pak For Data