8.1

CVE-2020-4686

IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678.

Data is provided by the National Vulnerability Database (NVD)
IbmSpectrum Virtualize Version8.3.1
IbmSpectrum Virtualize Version8.3.1 SwEditionpublic_cloud
IbmFlashsystem V5000 Firmware Version8.3.1
   IbmFlashsystem V5000 Version-
IbmFlashsystem V7200 Firmware Version8.3.1
   IbmFlashsystem V7200 Version-
IbmFlashsystem V9000 Firmware Version8.3.1
   IbmFlashsystem V9000 Version-
IbmFlashsystem V9100 Firmware Version8.3.1
   IbmFlashsystem V9100 Version-
IbmFlashsystem V9200 Firmware Version8.3.1
   IbmFlashsystem V9200 Version-
IbmSan Volume Controller Firmware Version8.3.1
   IbmSan Volume Controller Version-
IbmStorwize V5000 Firmware Version8.3.1
   IbmStorwize V5000 Version-
IbmStorwize V5000e Firmware Version8.3.1
   IbmStorwize V5000e Version-
IbmStorwize V5100 Firmware Version8.3.1
   IbmStorwize V5100 Version-
IbmStorwize V7000 Firmware Version8.3.1
   IbmStorwize V7000 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.2% 0.416
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.1 2.8 5.2
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
nvd@nist.gov 5.5 8 4.9
AV:N/AC:L/Au:S/C:P/I:P/A:N
psirt@us.ibm.com 6.8 1.6 5.2
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N