Information Disclosure Vulnerability in IBM Cloud Pak for Multicloud Management
CVE-2020-4765

4MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
19 May 2021

Summary

An information disclosure vulnerability in IBM Cloud Pak for Multicloud Management allows web pages to be stored locally on the system. This potentially exposes sensitive information, as these stored pages can be accessed by other users on the same system. This vulnerability highlights important security considerations for managing one’s own data and the potential risks of unauthorized access. For further details, refer to IBM's support documentation and X-Force ID: 188902.

Affected Version(s)

Cloud Pak for Multicloud Management 2.1

Cloud Pak for Multicloud Management 2.2

Cloud Pak for Multicloud Management 2.0

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.