CVE-2020-4693

EUVD-2020-25940
IBM Spectrum Protect Operations Center 7.1.0.000 through 7.1.10 and 8.1.0.000 through 8.1.9 may allow an attacker to execute arbitrary code on the system, caused by improper validation of data prior to export. IBM X-Force ID: 186782.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
ibmCNA
9.1 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/I:H/AC:L/A:N/UI:N/PR:N/S:U/AV:N/C:H/RL:O/E:U/RC:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 69%
Affected Products (NVD)
VendorProductVersion
ibmspectrum_protect_operations_center
7.1.0.000 ≤
𝑥
≤ 7.1.10.000
ibmspectrum_protect_operations_center
8.1.0.000 ≤
𝑥
≤ 8.1.9.000
𝑥
= Vulnerable software versions