cbcvebase.
CVE-2020-4421
published 2020-05-06

CVE-2020-4421: IBM WebSphere Application Liberty 19.0.0.5 through 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IBM X-Force…

medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
IBM WebSphere Application Liberty 19.0.0.5 through 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IBM X-Force ID: 180084.

Affected

3 ranges
VendorProductVersion rangeFixed in
ibmwebsphere_application_server>= 19.0.0.5 < 20.0.0.520.0.0.5
ibmwebsphere_application_server_liberty
ibmwebsphere_application_server_liberty