CVE-2020-4917: CSRF
IBM Cloud Pak System 2.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 191391.
Other sources
IBM Cloud Pak System is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-4917?
CVE-2020-4917 is a vulnerability in IBM Cloud Pak System 2.3 that allows cross-site request forgery attacks.
What is the severity of CVE-2020-4917?
CVE-2020-4917 has a severity rating of 8.8, which is considered high.
How does CVE-2020-4917 affect IBM Cloud Pak System?
CVE-2020-4917 affects IBM Cloud Pak System 2.3 and allows an attacker to execute malicious actions using the user's trust.
What is IBM X-Force ID: 191391?
IBM X-Force ID: 191391 is the ID assigned to the vulnerability report for CVE-2020-4917.
How can I fix CVE-2020-4917?
To fix CVE-2020-4917, users should update their IBM Cloud Pak System to version 2.3.3.3 or higher.