Man-in-the-middle Vulnerability in IBM Spectrum Protect Plus Server
CVE-2020-4496
6.8MEDIUM
What is CVE-2020-4496?
A vulnerability exists in the IBM Spectrum Protect Plus server versions 10.1.0.0 through 10.1.8.x, allowing for a man-in-the-middle attack due to improper certificate validation when connecting to an associated workload agent. This flaw can expose sensitive data and compromise system integrity if exploited. Users are advised to review their security practices and ensure that appropriate certificate validation methods are in place to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Spectrum Protect Plus 10.1.0.0
Spectrum Protect Plus 10.1.8.0
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved