First published: Wed May 27 2020(Updated: )
IBM Spectrum Scale 5.0.0.0 through 5.0.4.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 178761.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Scale | >=5.0.0.0<=5.0.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-4357.
The severity level of CVE-2020-4357 is medium with a score of 4.3.
A remote attacker can exploit CVE-2020-4357 by obtaining sensitive information when a detailed technical error message is returned in the browser.
The affected software version range for CVE-2020-4357 is IBM Spectrum Scale 5.0.0.0 through 5.0.4.4.
You can find more information about CVE-2020-4357 on the IBM X-Force ID page (https://exchange.xforce.ibmcloud.com/vulnerabilities/178761) and the IBM Support page (https://www.ibm.com/support/pages/node/6214478).