CVE-2020-4477

IBM Spectrum Protect Plus 10.1.0 through 10.1.5 discloses highly sensitive information in plain text in the virgo log file which could be used in further attacks against the system. IBM X-Force ID: 181779.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:spectrum_protect_plus:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:32

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/181779 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/181779 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/6221388 - Patch, Vendor Advisory () https://www.ibm.com/support/pages/node/6221388 - Patch, Vendor Advisory

Information

Published : 2020-06-15 14:15

Updated : 2024-11-21 05:32


NVD link : CVE-2020-4477

Mitre link : CVE-2020-4477

CVE.ORG link : CVE-2020-4477


JSON object : View

Products Affected

ibm

  • spectrum_protect_plus
CWE
CWE-532

Insertion of Sensitive Information into Log File