First published: Mon Aug 03 2020(Updated: )
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 agent files, in non-default configurations, on Windows are assigned access to everyone with full control permissions, which could allow a local user to cause interruption of the service operations. IBM X-Force ID: 185372.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Plus | >=10.1.0<=10.1.6 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-4631.
The severity of CVE-2020-4631 is medium with a CVSS score of 5.5.
IBM Spectrum Protect Plus versions 10.1.0 through 10.1.6 are affected by CVE-2020-4631.
A local user with access to non-default configurations of IBM Spectrum Protect Plus agent files on Windows can cause interruption of the service operations.
No, Microsoft Windows is not affected by CVE-2020-4631.