First published: Sat Feb 20 2021(Updated: )
The IBM Application Performance Monitoring UI (IBM Cloud APM 8.1.4) allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 187975.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Cloud Application Performance Management | =8.1.4 | |
Ibm Cloud Application Performance Management | =8.1.4 | |
<=8.1.4 | ||
<=8.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2020-4726.
CVE-2020-4726 has a severity of medium (4 out of 10).
IBM Cloud APM, Base Private (version 8.1.4) and IBM Cloud APM, Advanced Private (version 8.1.4) are affected by CVE-2020-4726.
An attacker can exploit CVE-2020-4726 by reading locally stored web pages in the IBM Application Performance Monitoring UI.
Please refer to the IBM support page (link provided) for information on how to fix CVE-2020-4726.