First published: Mon Jun 01 2020(Updated: )
IBM Security Guardium 11.1 could allow a remote authenticated attacker to execute arbitrary commands on the system. By sending a specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system. IBM X-Force ID: 174735.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | =11.1 | |
IBM InfoSphere Guardium z/OS | <=10.5 | |
IBM InfoSphere Guardium z/OS | <=10.6 | |
IBM InfoSphere Guardium z/OS | <=11.0 | |
IBM InfoSphere Guardium z/OS | <=11.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4180 has a severity rating that allows for remote command execution by authenticated attackers.
To fix CVE-2020-4180, upgrade to IBM Security Guardium version 11.1 or apply any available security patches.
CVE-2020-4180 affects users of IBM Security Guardium versions up to 11.1.
CVE-2020-4180 is classified as a remote command execution vulnerability.
No, CVE-2020-4180 requires an authenticated user to exploit the vulnerability.