CVE-2020-4146
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4epss 1.1%
exploitation probability
1.1%top 36% of all CVEs
observed exploitation
nono source reports it
IBM Security SiteProtector System 3.1.1 could allow a remote attacker to obtain sensitive information, caused by missing 'HttpOnly' flag. A remote attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 174129.
CVSS:3.0/A:N/AV:N/UI:N/C:L/S:C/AC:H/I:N/PR:N/RC:C/RL:O/E:U
Affected products
IBM · Security SiteProtector System