First published: Fri Jul 28 2023(Updated: )
IBM TRIRIGA 3.0, 4.0, and 4.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190744.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM TRIRIGA Application Platform | >=3.0<4.5 | |
<=3.x | ||
<=4.0-4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4868 is considered to have a medium severity score due to its potential to expose sensitive information.
To mitigate CVE-2020-4868, update your IBM TRIRIGA Application Platform to the latest version beyond 4.4.
CVE-2020-4868 could expose detailed technical error messages that may contain sensitive information useful for further attacks.
CVE-2020-4868 affects IBM TRIRIGA Application Platform versions 3.0, 4.0, and 4.4.
Yes, CVE-2020-4868 allows a remote attacker to potentially exploit the vulnerability over the network.