CVE-2020-4428: IBM Data Risk Manager Remote Code Execution Vulnerability
IBM Data Risk Manager contains an unspecified vulnerability which could allow a remote, authenticated attacker to execute commands on the system.�
Other sources
IBM Data Risk Manager could allow a remote authenticated attacker to execute arbitrary commands on the system.
IBM Data Risk Manager 2.0.1, 2.0.2, 2.0.3, and 2.0.4 could allow a remote authenticated attacker to execute arbitrary commands on the system. IBM X-Force ID: 180533.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4428?
The severity of CVE-2020-4428 is critical with a severity value of 9.1.
How does CVE-2020-4428 affect IBM Data Risk Manager?
CVE-2020-4428 affects IBM Data Risk Manager versions 2.0.1, 2.0.2, 2.0.3, and 2.0.4.
How can a remote authenticated attacker exploit CVE-2020-4428?
A remote authenticated attacker can exploit CVE-2020-4428 to execute arbitrary commands on the system.
Is there a remediation available for CVE-2020-4428?
Yes, IBM has provided a fix for CVE-2020-4428. Please refer to the IBM support page for more information.
Where can I find more information about CVE-2020-4428?
You can find more information about CVE-2020-4428 on the IBM X-Force Exchange and the IBM support page.