CVE-2020-4984: IBM Engineering Requirements Management DOORS and DOORS Web Access vulnerability

Published Jul 6, 2026
·
Updated

IBM DOORS Web Access could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

Affected Software

2 affected components
IBM Engineering Requirements Management DOORS and DOORS Web Access<=9.7.2.1 - 9.7.2.11
IBM Engineering Requirements Management DOORS and DOORS Web Access<=9.6.1.1 - 9.6.1.13

Event History

Jul 6, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software

Parent advisories

This vulnerability appears in the following advisories.

Frequently Asked Questions

1

What is the severity of CVE-2020-4984?

CVE-2020-4984 has a risk score of 18, indicating it poses a significant security concern.

2

How can I fix CVE-2020-4984?

To mitigate CVE-2020-4984, ensure that detailed error messages are not displayed to users in the browser.

3

What software is affected by CVE-2020-4984?

CVE-2020-4984 affects IBM Engineering Requirements Management DOORS and DOORS Web Access.

4

What kind of information could be exposed due to CVE-2020-4984?

CVE-2020-4984 could expose sensitive information contained in detailed technical error messages.

5

Can CVE-2020-4984 lead to further attacks?

Yes, the sensitive information exposed through CVE-2020-4984 could be leveraged by attackers for subsequent attacks against the system.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203