CVE-2020-4348: Medium severity ibm spectrum scale vulnerability
Published May 27, 2020
·Updated
IBM Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.4 could allow an authenticated GUI user to perform unauthorized actions due to missing function level access control. IBM X-Force ID: 178414
Affected Software
2 affected components
IBM Spectrum Scale>=4.2.0.0<=4.2.3.21
IBM Spectrum Scale>=5.0.0.0<=5.0.4.4
Remediation
Patch Available
Event History
May 27, 2020
CVE Published
via MITRE·01:15 PM
Data Sourced
via MITRE·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-4348.
2
What is the severity of CVE-2020-4348?
The severity of CVE-2020-4348 is medium with a severity value of 6.5.
3
What is the affected software for CVE-2020-4348?
The affected software for CVE-2020-4348 is IBM Spectrum Scale versions 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.4.
4
What actions could an authenticated GUI user perform due to this vulnerability?
An authenticated GUI user could perform unauthorized actions due to missing function level access control.
5
Where can I find more information about CVE-2020-4348?
You can find more information about CVE-2020-4348 at the IBM X-Force ID: 178414 and the IBM support page.