Log Poisoning Vulnerability in IBM Spectrum Scale
CVE-2020-4851

4MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
16 March 2021

Summary

A vulnerability exists in IBM Spectrum Scale that allows a local user to exploit log files, potentially compromising the integrity of these logs. This could lead to challenges in monitoring and diagnosing issues during support and development activities. Such manipulation may enable unauthorized access to sensitive information, impacting overall security and reliability. It is critical for users of affected versions to implement available patches to mitigate this risk.

Affected Version(s)

Spectrum Scale 5.0.0

Spectrum Scale 5.0.5.4

Spectrum Scale 5.1.0

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.