CVE-2020-4650: Medium severity ibm maximo spatial vulnerability
IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 186023.
Other sources
IBM Maximo Spatial Asset Management allows web pages to be stored locally which can be read by another user on the system.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4650?
The severity of CVE-2020-4650 is medium.
How does IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allow web pages to be stored locally?
IBM Maximo Spatial Asset Management 7.6.0.3, 7.6.0.4, 7.6.0.5, and 7.6.1.0 allows web pages to be stored locally by default.
How can another user on the system read the locally stored web pages in IBM Maximo Spatial Asset Management?
Another user on the system can read the locally stored web pages in IBM Maximo Spatial Asset Management due to a vulnerability in the system.
Is there a fix available for CVE-2020-4650?
Yes, IBM has released patches to address the vulnerability in IBM Maximo Spatial Asset Management.
Where can I find more information about CVE-2020-4650?
You can find more information about CVE-2020-4650 on the IBM X-Force Exchange website and the IBM support page.