First published: Mon Oct 12 2020(Updated: )
A cross-site request forgery (CSRF) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which is an attack that forces a user to execute unwanted actions on the web application while they are currently authenticated. This applies to a single server class only, with no impact to remainder of web application. IBM X-Force ID: 189151.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Curam Social Program Management | =7.0.9.0 | |
IBM Curam Social Program Management | =7.0.10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-4773.
The severity of CVE-2020-4773 is medium with a CVSS score of 6.5.
IBM Curam Social Program Management versions 7.0.9 and 7.0.10 are affected.
Cross-site request forgery (CSRF) is an attack that forces a user to execute unwanted actions on a web application while they are authenticated.
Please refer to the IBM support page for instructions on how to mitigate the CSRF vulnerability.