CVE-2020-4631: Medium severity IBM Spectrum Protect Plus vulnerability
Published Aug 4, 2020
·Updated
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 agent files, in non-default configurations, on Windows are assigned access to everyone with full control permissions, which could allow a local user to cause interruption of the service operations. IBM X-Force ID: 185372.
Affected Software
2 affected components
IBM Spectrum Protect Plus>=10.1.0<=10.1.6
Microsoft Windows
Remediation
Patch Available
Event History
Aug 4, 2020
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-4631.
2
What is the severity of CVE-2020-4631?
The severity of CVE-2020-4631 is medium with a CVSS score of 5.5.
3
Which software is affected by CVE-2020-4631?
IBM Spectrum Protect Plus versions 10.1.0 through 10.1.6 are affected by CVE-2020-4631.
4
How can the vulnerability be exploited?
A local user with access to non-default configurations of IBM Spectrum Protect Plus agent files on Windows can cause interruption of the service operations.
5
Is Microsoft Windows affected by CVE-2020-4631?
No, Microsoft Windows is not affected by CVE-2020-4631.