CVE-2020-4170

Severity
4.3MEDIUM
EPSS
0.1%
top 74.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 24
Latest updateMay 24

Description

IBM Security Guardium Insights 2.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 174406.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-3r2c-w822-3j3f: IBM Security Guardium Insights 22022-05-24
CVEList
CVE-2020-4170: IBM Security Guardium Insights 22020-08-24
CVE-2020-4170 (MEDIUM CVSS 4.3) | IBM Security Guardium Insights 2.0. | cvebase.io