CVE-2020-4249: Medium severity ibm security identity governance and intelligence vulnerability
IBM Security Identity Governance and Intelligence 5.2.6 could disclose highly sensitive information to other authenticated users on the sytem due to incorrect authorization. IBM X-Force ID: 175485.
Other sources
IBM Security Identity Governance Virtual Appliance could disclose highly sensitive information to other authenticated users on the sytem due to incorrect authorization.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2020-4249.
What is the severity of CVE-2020-4249?
The severity of CVE-2020-4249 is medium (6.5).
What is the affected software of CVE-2020-4249?
The affected software is IBM Security Identity Governance and Intelligence version 5.2.6.
How can an attacker exploit CVE-2020-4249?
An attacker can exploit CVE-2020-4249 by leveraging incorrect authorization to access highly sensitive information.
Is there a fix available for CVE-2020-4249?
Yes, IBM has provided a fix for CVE-2020-4249. Please refer to the IBM support page for more information.