First published: Wed Aug 19 2020(Updated: )
IBM Content Navigator 3.0.7 and 3.0.8 could allow an authenticated user to view cached content of another user that they should not have access to. IBM X-Force ID: 186679.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Content Navigator | =3.0.0 | |
IBM Content Navigator | =3.0.7 | |
IBM Content Navigator | =3.0.8 | |
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
<=3.0CD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for IBM Content Navigator is CVE-2020-4687.
The severity of CVE-2020-4687 is medium with a CVSS score of 4.3.
An authenticated user can view cached content of another user in IBM Content Navigator through this vulnerability.
IBM Content Navigator versions 3.0.7 and 3.0.8 are affected by CVE-2020-4687.
No, IBM AIX, Linux kernel, and Microsoft Windows are not vulnerable to CVE-2020-4687.
You can find more information about CVE-2020-4687 at the following links: [IBM X-Force ID:186679](https://exchange.xforce.ibmcloud.com/vulnerabilities/186679) and [IBM Support](https://www.ibm.com/support/pages/node/6262423).