Lucene search

K
ibmIBMB6718F79FA3BDA3BABF921407AA60F983DFCAAC592ED717CC4A3479CB223E027
HistoryOct 30, 2020 - 2:45 p.m.

Security Bulletin: Sensitive information vulnerability affects IBM i2 iBase (CVE-2020-4584)

2020-10-3014:45:27
www.ibm.com
14
ibm i2 ibase
sensitive information
vulnerability
9.0 release
passport advantage

EPSS

0.003

Percentile

70.4%

Summary

The sensitive information vulnerability was addressed in IBM i2 iBase.

Vulnerability Details

CVEID:CVE-2020-4584
**DESCRIPTION:**IBM i2 iBase could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
CVSS Base score: 3.3
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/184574 for the current score.
CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

Affected Product(s) Version(s)
IBM i2 iBase All
IBM i2 iBase 8.9.13

Remediation/Fixes

This was addressed in the 9.0 release. Please consult your passport advantage account for details on upgrading

Workarounds and Mitigations

None

EPSS

0.003

Percentile

70.4%

Related for B6718F79FA3BDA3BABF921407AA60F983DFCAAC592ED717CC4A3479CB223E027