First published: Thu Oct 08 2020(Updated: )
A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted file path in URL request to view arbitrary files on the system. IBM X-Force ID: 189154.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Curam Social Program Management | =7.0.9.0 | |
IBM Curam Social Program Management | =7.0.10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-4776.
The title of the vulnerability is 'A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10'.
The vulnerability impacts IBM Curam Social Program Management versions 7.0.9 and 7.0.10.
The severity of CVE-2020-4776 is high, with a CVSS score of 7.5.
An attacker can exploit the vulnerability by sending a specially-crafted file path in a URL request to view arbitrary files on the system.