CVE-2020-4590: Medium severity IBM WebSphere Application Server Liberty vulnerability
IBM WebSphere Application Server Liberty 17.0.0.3 through 20.0.0.9 running oauth-2.0 or openidConnectServer-1.0 server features is vulnerable to a denial of service attack conducted by an authenticated client. IBM X-Force ID: 184650.
Other sources
IBM WebSphere Application Server Liberty running oauth-2.0 or openidConnectServer-1.0 server features is vulnerable to a denial of service attack conducted by an authenticated client.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4590?
The severity of CVE-2020-4590 is medium with a severity value of 6.5.
Which versions of IBM WebSphere Application Server Liberty are affected by CVE-2020-4590?
IBM WebSphere Application Server Liberty versions 17.0.0.3 through 20.0.0.9 are affected by CVE-2020-4590.
What is the vulnerability description of CVE-2020-4590?
CVE-2020-4590 is a vulnerability in IBM WebSphere Application Server Liberty running oauth-2.0 or openidConnectServer-1.0 server features that allows an authenticated client to conduct a denial of service attack.
Is CVE-2020-4590 a denial of service vulnerability?
Yes, CVE-2020-4590 is a vulnerability that allows an authenticated client to conduct a denial of service attack.
How can I mitigate the vulnerability in IBM WebSphere Application Server Liberty (CVE-2020-4590)?
To mitigate CVE-2020-4590, it is recommended to apply the necessary security patches and updates provided by IBM.