CVE-2020-4774
published 2020-10-12CVE-2020-4774: An XPath vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, caused by the improper handling of user-supplied input. By sending a…
medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
An XPath vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, caused by the improper handling of user-supplied input. By sending a specially-crafted input, a remote attacker could exploit this vulnerability to obtain unauthorized access or reveal sensitive information such as XML document structure and content. IBM X-Force ID: 189152.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | curam_social_program_management | — | — |
| ibm | curam_social_program_management | — | — |
| ibm | curam_spm | — | — |
| ibm | curam_spm | — | — |