First published: Tue Dec 22 2020(Updated: )
IBM Security Access Manager could allow a local user to obtain sensitive information via the capturing of screenshots of authentication credentials.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Identity Governance and Intelligence | <=5.2.6 | |
IBM Security Identity Governance and Intelligence | =5.2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2020-4996.
This vulnerability allows a local user to obtain sensitive information through the capturing of screenshots of authentication credentials in IBM Security Identity Governance and Intelligence 5.2.6.
The severity level of CVE-2020-4996 is medium, with a CVSS score of 6.5.
An attacker can obtain sensitive information, such as authentication credentials, by capturing screenshots of authentication credentials.
Yes, IBM has provided a fix for this vulnerability. Please refer to the IBM Support page for more information on the fix.