First published: Tue Mar 17 2020(Updated: )
IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.8 could potentially disclose highly sensitive information to a privileged user due to improper access controls. IBM X-Force ID: 174956.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM DataPower Gateway | >=2018.4.1.0<=2018.4.1.8 | |
<=2018.4.1.0-2018.4.1.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4203 is a vulnerability in IBM DataPower Gateway that could potentially disclose highly sensitive information to a privileged user due to improper access controls.
The severity of CVE-2020-4203 is rated as medium with a severity value of 4.9.
IBM DataPower Gateway versions 2018.4.1.0 through 2018.4.1.8 are affected by CVE-2020-4203.
To fix CVE-2020-4203, it is recommended to upgrade IBM DataPower Gateway to a version beyond 2018.4.1.9.
You can find more information about CVE-2020-4203 on the IBM X-Force ID page (https://exchange.xforce.ibmcloud.com/vulnerabilities/174956) and the IBM support page (https://www.ibm.com/support/pages/node/6090934).