CVE-2020-4381: Medium severity ibm elastic storage server vulnerability
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.6 could allow an authenticated user to cause a denial of service during deployment or upgrade if GUI specific services are enabled. IBM X-Force ID: 179162.
Other sources
IBM Spectrum Scale for IBM Elastic Storage Server could allow an authenticated user to cause a denial of service during deployment or upgrade if GUI specific services are enabled.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-4381?
CVE-2020-4381 is a vulnerability in IBM Spectrum Scale for IBM Elastic Storage Server that could allow an authenticated user to cause a denial of service during deployment or upgrade if GUI specific services are enabled.
How severe is CVE-2020-4381?
CVE-2020-4381 has a severity rating of medium with a CVSS score of 6.5.
Which versions of IBM Elastic Storage Server are affected by CVE-2020-4381?
IBM Elastic Storage Server versions 5.3.0 through 5.3.6 are affected by CVE-2020-4381.
How can an authenticated user exploit CVE-2020-4381?
An authenticated user can exploit CVE-2020-4381 by enabling GUI specific services during deployment or upgrade.
Where can I find more information about CVE-2020-4381?
You can find more information about CVE-2020-4381 on IBM's X-Force ID page (https://exchange.xforce.ibmcloud.com/vulnerabilities/179162) and IBM's support page (https://www.ibm.com/support/pages/node/6261435).