← Back

CVE-2020-4494

nvd nist
Published: Jun 15, 2020Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum Protect for Space Management 8.1.7.0 through 8.1.9.1 (Linux), 8.1.9.0 through 8.1.9.1 (AIX) web user interfaces could allow an attacker to bypass authentication due to improper session validation which can result in access to unauthorized resources. IBM X-Force ID: 182019.

Affected (4)

2 products
Spectrum Protect Client
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 8.1.7.0 to 8.1.9.1
Running on/withPlatform Versions
Microsoft
Windows
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 8.1.9.0 to 8.1.9.1
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 8.1.7.0 to 8.1.9.1
Running on/withPlatform Versions
Linux
Linux Kernel
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 8.1.9.0 to 8.1.9.1
Running on/withPlatform Versions
Ibm
Aix
All versions

References (4)

Source: psirt@us.ibm.com
VDB EntryVendor Advisory
Source: psirt@us.ibm.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
VDB EntryVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.