CVE-2020-4378: Medium severity IBM Spectrum Scale vulnerability
Published May 27, 2020
·Updated
IBM Spectrum Scale 5.0.0.0 through 5.0.4.4 could allow a privileged authenticated user to perform unauthorized actions using a specially crated HTTP POST command. IBM X-Force ID: 179157.
Affected Software
1 affected component
IBM Spectrum Scale>=5.0.0.0<=5.0.4.4
Remediation
Patch Available
Event History
May 27, 2020
CVE Published
via MITRE·01:15 PM
Data Sourced
via MITRE·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-4378.
2
What is the severity of CVE-2020-4378?
The severity of CVE-2020-4378 is medium (4.9).
3
What is the affected software?
The affected software is IBM Spectrum Scale version 5.0.0.0 through 5.0.4.4.
4
How can a privileged authenticated user exploit CVE-2020-4378?
A privileged authenticated user can exploit CVE-2020-4378 by performing unauthorized actions using a specially crafted HTTP POST command.
5
Is there a reference for CVE-2020-4378?
Yes, you can find more information about CVE-2020-4378 at the following references: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/179157), [Reference 2](https://www.ibm.com/support/pages/node/6214484).