CVE-2020-4790Improper Input Validation in IBM Security Identity Governance AND Intelligence

Severity
6.5MEDIUMNVD
EPSS
0.1%
top 72.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 9
Latest updateMay 24

Description

IBM Security Identity Governance and Intelligence 5.2.6 could allow a user to cause a denial of service due to improperly validating a supplied URL, rendering the application unusuable. IBM X-Force ID: 189375.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-c54w-4pvq-9rmg: IBM Security Identity Governance and Intelligence 52022-05-24
CVEList
CVE-2020-4790: IBM Security Identity Governance and Intelligence 52021-02-09