CVE-2020-4635: Medium severity ibm security soar vulnerability
Published Mar 19, 2021
·Updated
IBM Resilient SOAR 40 and earlier could disclose sensitive information by allowing a user to enumerate usernames.
Affected Software
2 affected components
IBM SOAR=40.0
redhat Enterprise Linux
Remediation
Patch Available
Event History
Mar 19, 2021
CVE Published
via MITRE·03:20 PM
Data Sourced
via MITRE·03:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-4635?
CVE-2020-4635 is rated as a medium severity vulnerability due to its potential for unauthorized information disclosure.
2
How do I fix CVE-2020-4635?
To mitigate CVE-2020-4635, upgrade to a patched version of IBM Resilient SOAR beyond version 40.0.
3
What type of information is disclosed by CVE-2020-4635?
CVE-2020-4635 allows attackers to enumerate valid usernames, potentially leading to further attacks.
4
Which software versions are affected by CVE-2020-4635?
CVE-2020-4635 affects IBM Resilient SOAR version 40.0 and earlier.
5
Is there a workaround for CVE-2020-4635?
No specific workaround is provided for CVE-2020-4635; the recommended action is to upgrade to the latest version.