CVE-2020-4224

2.9LOW

Key Information:

Vendor
IBM
Status
Vendor
CVE Published:
3 February 2020

Summary

IBM StoredIQ 7.6.0.17 through 7.6.0.20 could disclose sensitive information to a local user due to data in certain directories not being encrypted when it contained symbolic links. IBM X-Force ID: 175133.

Affected Version(s)

StoredIQ 7.6.0.17

StoredIQ 7.6.0.20

References

CVSS V3.1

Score:
2.9
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.