First published: Fri Sep 04 2020(Updated: )
IBM InfoSphere Metadata Asset Manager 11.7 is vulnerable to server-side request forgery. By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to submit or control server requests. IBM X-Force ID: 185416.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Metadata Asset Manager | =11.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
IBM InfoSphere Metadata Asset Manager 11.7 is a software product developed by IBM that manages metadata assets.
The vulnerability in IBM InfoSphere Metadata Asset Manager 11.7 is server-side request forgery (SSRF).
An attacker can exploit the SSRF vulnerability in IBM InfoSphere Metadata Asset Manager 11.7 by sending a specially crafted request to submit or control server requests.
The severity of CVE-2020-4632 is medium.
Yes, IBM has provided a fix for the vulnerability in InfoSphere Metadata Asset Manager 11.7. Please refer to the IBM support page for more information.