CVE-2020-4927Sensitive Information Exposure in IBM Spectrum Scale

Severity
8.2HIGHNVD
CNA5.7
EPSS
0.1%
top 71.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 15

Description

A vulnerability in the Spectrum Scale 5.0.5.0 through 5.1.6.1 core component could allow unauthorized access to user data or injection of arbitrary data in the communication protocol. IBM X-Force ID: 191695.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:NExploitability: 3.9 | Impact: 4.2

Affected Packages2 packages

CVEListV5ibm/spectrum_scale5.0.5.05.1.6.1
NVDibm/spectrum_scale5.0.5.05.1.7.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-33gc-vmgr-56fc: A vulnerability in the Spectrum Scale 52023-03-15
CVEList
IBM Spectrum Scale information disclosure2023-03-15
CVE-2020-4927 — Sensitive Information Exposure in IBM | cvebase