First published: Mon Apr 26 2021(Updated: )
IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 could allow a local user to escalate their privileges to take full control of the system due to insecure directory permissions. IBM X-Force ID: 198811.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Backup-Archive Client | >=8.1.0.0<=8.1.11.0 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.11.0 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.11.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20532.
The severity of CVE-2021-20532 is high with a CVSS score of 7.8.
A local user can exploit CVE-2021-20532 by escalating their privileges to take full control of the system due to insecure directory permissions.
IBM Spectrum Protect Client versions 8.1.0.0 through 8.1.11.0 are affected by CVE-2021-20532.
Yes, IBM Spectrum Protect Backup-Archive Client is affected by CVE-2021-20532.
No, Microsoft Windows is not vulnerable to CVE-2021-20532.
You can find more information about CVE-2021-20532 at the following references: [IBM X-Force ID: 198811](https://exchange.xforce.ibmcloud.com/vulnerabilities/198811) and [IBM Support](https://www.ibm.com/support/pages/node/6445503).
The CWE category of CVE-2021-20532 is CWE-276.