← back
CVE-2020-4348

CVE-2020-4348

CVSS 6.5 MEDIUMEPSS 0.8%
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
27 May 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.4 could allow an authenticated GUI user to perform unauthorized actions due to missing function level access control. IBM X-Force ID: 178414
CVSS:3.0/A:N/I:H/PR:L/C:N/AV:N/S:U/AC:L/UI:N/RC:C/E:U/RL:O
Affected products
IBM · Spectrum Scale