Log Poisoning Vulnerability in IBM Spectrum Scale
CVE-2020-4851
4MEDIUM
Summary
A vulnerability exists in IBM Spectrum Scale that allows a local user to exploit log files, potentially compromising the integrity of these logs. This could lead to challenges in monitoring and diagnosing issues during support and development activities. Such manipulation may enable unauthorized access to sensitive information, impacting overall security and reliability. It is critical for users of affected versions to implement available patches to mitigate this risk.
Affected Version(s)
Spectrum Scale 5.0.0
Spectrum Scale 5.0.5.4
Spectrum Scale 5.1.0
References
CVSS V3.1
Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved