First published: Thu Sep 24 2020(Updated: )
IBM Security Secret Server (IBM Security Verify Privilege Vault Remote 1.2 ) could allow a local user to bypass security restrictions due to improper input validation. IBM X-Force ID: 184884.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Privilege Vault Remote On-premises | =1.3.2 | |
macOS | ||
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4607 is considered a medium severity vulnerability due to improper input validation allowing security restrictions to be bypassed.
To fix CVE-2020-4607, ensure that you are using the latest version of IBM Security Verify Privilege Vault Remote and apply any available patches.
CVE-2020-4607 affects local users of the IBM Security Verify Privilege Vault Remote 1.2 and potentially 1.3.2.
Exploitation of CVE-2020-4607 can allow local users to bypass important security controls, compromising the integrity of the system.
Yes, CVE-2020-4607 is addressed in later versions of IBM Security Verify Privilege Vault Remote, so upgrading is essential.