CVE-2020-4811
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 2.4epss 0.7%
exploitation probability
0.7%top 48% of all CVEs
observed exploitation
nono source reports it
IBM Cloud Pak for Security (CP4S) 1.4.0.0, 1.5.0.0, 1.5.0.1, 1.6.0.0, and 1.6.0.1 could allow a privileged user to inject inject malicious data using a specially crafted HTTP request due to improper input validation.
CVSS:3.0/AV:N/A:N/C:N/S:U/PR:H/UI:R/I:L/AC:L/E:U/RL:O/RC:C
Affected products
IBM · Cloud Pak for Security