CVE-2020-4592
CVE-2020-4592
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.3EPSS 0.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
18 Nov 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM MQ Appliance 9.1.CD and LTS could allow an authenticated user, under nondefault configuration to cause a data corruption attack due to an error when using segmented messages.
CVSS:3.0/PR:L/AV:N/AC:H/S:U/UI:N/I:H/C:N/A:N/RL:O/RC:C/E:U
Affected products
IBM · MQ Appliance