CVE-2020-4340
CVE-2020-4340
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.1EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
23 Sep 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Security Secret Server prior to 10.9 could allow an attacker to bypass SSL security due to improper certificate validation. IBM X-Force ID: 178180.
CVSS:3.0/UI:R/PR:N/I:L/A:N/AV:N/S:U/C:N/AC:H/RL:O/E:U/RC:C
Affected products
IBM · Security Secret Server