CVE-2020-4773: CSRF
A cross-site request forgery (CSRF) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which is an attack that forces a user to execute unwanted actions on the web application while they are currently authenticated. This applies to a single server class only, with no impact to remainder of web application. IBM X-Force ID: 189151.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2020-4773.
What is the severity of CVE-2020-4773?
The severity of CVE-2020-4773 is medium with a CVSS score of 6.5.
Which software versions are affected by CVE-2020-4773?
IBM Curam Social Program Management versions 7.0.9 and 7.0.10 are affected.
What is cross-site request forgery (CSRF)?
Cross-site request forgery (CSRF) is an attack that forces a user to execute unwanted actions on a web application while they are authenticated.
Are there any available fixes for CVE-2020-4773?
Please refer to the IBM support page for instructions on how to mitigate the CSRF vulnerability.