4.3
CVE-2020-4646
- EPSS 0.73%
- Veröffentlicht 19.05.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 05:33:02
- Erkennungen
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5, 6.0.0.0 through 6.0.3.3, and 6.1.0.0 through 6.1.0.2 could allow an authenticated user to view pages they shoiuld not have access to due to improper authorization control.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Sterling B2b Integrator SwEdition standard Version >= 5.2.0.0 <= 5.2.6.5
Ibm ≫ Sterling B2b Integrator SwEdition standard Version >= 6.0.0.0 <= 6.0.3.3
Ibm ≫ Sterling B2b Integrator SwEdition standard Version >= 6.1.0.0 <= 6.1.0.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.73% | 0.493 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
| IBM | 4.3 | 2.8 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
https://exchange.xforce.ibmcloud.com/vulnerabilities/185808
https://www.ibm.com/support/pages/node/6454169