← back
CVE-2020-4521high

CVE-2020-4521

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.8epss 6.5%
exploitation probability
6.5%top 7% of all CVEs
observed exploitation
nono source reports it
IBM Maximo Asset Management 7.6.0 and 7.6.1 could allow a remote authenticated attacker to execute arbitrary code on the system, caused by an unsafe deserialization in Java. By sending specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 182396.
CVSS:3.0/AC:L/A:H/AV:N/I:H/S:U/C:H/UI:N/PR:L/E:U/RC:C/RL:O