CVE-2020-5017: Medium severity ibm storage protect plus vulnerability
Published Jan 7, 2021
·Updated
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may allow a local user to obtain access to information beyond their intended role and permissions. IBM X-Force ID: 193653.
Other sources
IBM Spectrum Protect Plus may allow a local user to obtain access to information beyond their intended role and permissions.
— IBM
Affected Software
3 affected components
IBM Spectrum Protect Plus<=10.1.0-10.1.6
IBM Spectrum Protect>=10.1.0<10.1.7
Linux Linux kernel
Remediation
Patch Available
Event History
Jan 7, 2021
CVE Published
via IBM·12:00 AM
Jan 8, 2021
CVE Published
via MITRE·07:10 PM
Data Sourced
via MITRE·07:10 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-5017.
2
What is the severity of CVE-2020-5017?
The severity of CVE-2020-5017 is medium with a severity value of 5.5.
3
Which IBM product is affected by this vulnerability?
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 is affected by this vulnerability.
4
How can a local user exploit this vulnerability?
A local user can exploit this vulnerability to obtain access to information beyond their intended role and permissions.
5
Is there any additional information available for CVE-2020-5017?
Yes, you can find additional information about CVE-2020-5017 at the IBM X-Force ID: 193653.