CVE-2020-4471: Medium severity ibm storage protect plus vulnerability
Published Jun 15, 2020
·Updated
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow an unauthenticated attacker to cause a denial of service or hijack DNS sessions by send a specially crafted HTTP command to the remote server. IBM X-Force ID: 181726.
Affected Software
1 affected component
IBM Spectrum Protect Plus>=10.1.0<=10.1.5
Remediation
Patch Available
Event History
Jun 15, 2020
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this IBM Spectrum Protect Plus vulnerability?
The vulnerability ID for this IBM Spectrum Protect Plus vulnerability is CVE-2020-4471.
2
What is the severity level of CVE-2020-4471?
The severity level of CVE-2020-4471 is medium.
3
How can an unauthenticated attacker exploit CVE-2020-4471?
An unauthenticated attacker can exploit CVE-2020-4471 by sending a specially crafted HTTP command to the remote server, which could cause a denial of service or hijack DNS sessions.
4
Which versions of IBM Spectrum Protect Plus are affected by CVE-2020-4471?
IBM Spectrum Protect Plus versions 10.1.0 through 10.1.5 are affected by CVE-2020-4471.
5
Where can I find more information about CVE-2020-4471?
More information about CVE-2020-4471 can be found at the following references: [1] [2] [3]