First published: Tue Feb 09 2021(Updated: )
IBM Spectrum Protect Plus 10.1.0 through 10.1.7 could allow a remote user to inject arbitrary data iwhich could cause the serivce to crash due to excess resource consumption. IBM X-Force ID: 193659.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Plus | >=10.1.0<=10.1.7 | |
IBM Spectrum Protect Plus | <=10.1.0-10.1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-5023 is a vulnerability in IBM Spectrum Protect Plus 10.1.0 through 10.1.7 that could allow a remote user to inject arbitrary data, causing the service to crash due to excess resource consumption.
CVE-2020-5023 has a severity rating of 7.5, which is considered high.
CVE-2020-5023 could allow a remote attacker to inject arbitrary data, potentially leading to a crash of the IBM Spectrum Protect Plus service.
IBM Spectrum Protect Plus versions 10.1.0 through 10.1.7 are affected by CVE-2020-5023.
To fix the vulnerability CVE-2020-5023, it is recommended to upgrade IBM Spectrum Protect Plus to a version beyond 10.1.7 or apply any available patches or updates provided by IBM.