CVE-2020-4686

IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:spectrum_virtualize:8.3.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:spectrum_virtualize:8.3.1:*:*:*:public_cloud:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ibm:flashsystem_v5000_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flashsystem_v5000:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ibm:flashsystem_v7200_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flashsystem_v7200:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ibm:flashsystem_v9000_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flashsystem_v9000:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ibm:flashsystem_v9100_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flashsystem_v9100:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:ibm:flashsystem_v9200_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flashsystem_v9200:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:ibm:san_volume_controller_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:san_volume_controller:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:ibm:storwize_v5000_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:storwize_v5000:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:ibm:storwize_v5000e_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:storwize_v5000e:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:ibm:storwize_v5100_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:storwize_v5100:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:ibm:storwize_v7000_firmware:8.3.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:storwize_v7000:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:33

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/186678 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/186678 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/6260199 - Patch, Vendor Advisory () https://www.ibm.com/support/pages/node/6260199 - Patch, Vendor Advisory

Information

Published : 2020-08-17 13:15

Updated : 2024-11-21 05:33


NVD link : CVE-2020-4686

Mitre link : CVE-2020-4686

CVE.ORG link : CVE-2020-4686


JSON object : View

Products Affected

ibm

  • flashsystem_v5000
  • storwize_v5000_firmware
  • san_volume_controller
  • flashsystem_v9000
  • storwize_v7000
  • storwize_v5000
  • storwize_v7000_firmware
  • flashsystem_v9100
  • flashsystem_v9200_firmware
  • spectrum_virtualize
  • flashsystem_v5000_firmware
  • flashsystem_v9000_firmware
  • san_volume_controller_firmware
  • flashsystem_v9200
  • storwize_v5100_firmware
  • flashsystem_v9100_firmware
  • storwize_v5100
  • storwize_v5000e
  • storwize_v5000e_firmware
  • flashsystem_v7200_firmware
  • flashsystem_v7200