CVE-2020-4495
CVE-2020-4495
IBM Jazz Foundation and IBM Engineering products could allow a remote attacker to bypass security restrictions, caused by improper access control. By sending a specially-crafted request to the REST API, an attacker could exploit this vulnerability to bypass access restrictions, and execute arbitrary actions with administrative privileges. IBM X-Force ID: 182114.
CVSS:3.0/AV:N/PR:L/I:H/AC:L/A:H/UI:N/S:U/C:H/E:U/RL:O/RC:C
Produtos afetados
IBM · Engineering Lifecycle OptimizationIBM · Engineering Test ManagementIBM · Rational Collaborative Lifecycle ManagementIBM · Rational DOORS Next GenerationIBM · Rational Engineering Lifecycle ManagerIBM · Rational Quality ManagerIBM · Rational Rhapsody Model ManagerQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →