First published: Mon Sep 20 2021(Updated: )
IBM Edge 4.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 189633.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Edge | <=4.2 | |
IBM Edge Application Manager | =4.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4809 has been classified as a moderate severity vulnerability.
To fix CVE-2020-4809, ensure that web pages stored locally are only accessible by the intended user through proper access controls.
IBM Edge versions up to and including 4.2 are affected by CVE-2020-4809.
Yes, CVE-2020-4809 can lead to sensitive data exposure as web pages stored locally could be read by unauthorized users.
Yes, CVE-2020-4809 is related to user permissions as it allows local web page access based on inadequate access controls.