CVE-2020-4842: Medium severity ibm security secret server vulnerability
Published Dec 21, 2020
·Updated
IBM Security Secret Server 10.6 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190046.
Affected Software
2 affected components
IBM Security Secret Server=10.6
Microsoft Windows
Remediation
Patch Available
Event History
Dec 21, 2020
CVE Published
via MITRE·06:05 PM
Data Sourced
via MITRE·06:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-4842.
2
What is the title of the vulnerability?
The title of the vulnerability is 'IBM Security Secret Server 10.6 could allow a remote attacker to obtain sensitive information when a…'
3
What is the severity of CVE-2020-4842?
The severity of CVE-2020-4842 is medium with a CVSS score of 4.9.
4
What software is affected by CVE-2020-4842?
IBM Security Secret Server 10.6 is affected by CVE-2020-4842.
5
How can the vulnerability be exploited?
The vulnerability can be exploited by a remote attacker who can obtain sensitive information when a detailed technical error message is returned in the browser.