First published: Wed Mar 18 2020(Updated: )
IBM Tivoli Netcool/OMNIbus 8.1.0 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 174910.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Tivoli Netcool\/omnibus | =8.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4199 has a moderate severity rating due to its potential for cross-site request forgery attacks.
To fix CVE-2020-4199, it is recommended to apply the latest patches provided by IBM for Tivoli Netcool/OMNIbus 8.1.0.
The potential impacts of CVE-2020-4199 include unauthorized actions being executed by an attacker on behalf of a trusted user.
CVE-2020-4199 specifically affects Tivoli Netcool/OMNIbus version 8.1.0.
No, CVE-2020-4199 can be exploited without the need for user authentication.