Information Disclosure Vulnerability in IBM Jazz Foundation Products
CVE-2020-4487
4.3MEDIUM
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 8 January 2021
What is CVE-2020-4487?
IBM Jazz Foundation Products are susceptible to a vulnerability that may allow remote attackers to gain unauthorized access to sensitive information. This occurs when a detailed technical error message is displayed in the browser, potentially providing attackers with insights that can be exploited to conduct further attacks. Organizations using these products should ensure they are patched and review their configurations to mitigate the risk associated with this vulnerability.
Affected Version(s)
Engineering Lifecycle Optimization 7.0
Engineering Lifecycle Optimization 7.0.1
Engineering Test Management 7.0.0