First published: Wed Jul 14 2021(Updated: )
IBM Cloud Pak System 2.3 could allow a local user in some situations to view the artifacts of another user in self service console. IBM X-Force ID: 197497.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak System | <=V2.3.3.0 - V2.3.3.3 | |
IBM Cloud Pak System | =2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-20478 is medium.
In some situations, a local user can view the artifacts of another user in self-service console on IBM Cloud Pak System 2.3.
Versions 2.3.3.0 to 2.3.3.3 of IBM Cloud Pak System are affected by CVE-2021-20478.
Yes, you can find references for CVE-2021-20478 at the following links: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/197497) and [Reference 2](https://www.ibm.com/support/pages/node/6473065).