CVE-2020-4532
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
IBM Business Automation Workflow and IBM Business Process Manager (IBM Business Process Manager Express 8.5.5, 8.5.6, 8.5.7, and 8.6) could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 182716.
IBM Business Automation Workflow e IBM Business Process Manager (IBM Business Process Manager Express versiones 8.5.5, 8.5.6, 8.5.7 y 8.6), podrían permitir a un atacante remoto obtener información confidencial cuando se devuelve un mensaje de error técnico detallado en el navegador. Esta información podría ser usada en futuros ataques contra el sistema. ID de IBM X-Force: 182716
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-12-30 CVE Reserved
- 2020-06-17 CVE Published
- 2023-06-21 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-209: Generation of Error Message Containing Sensitive Information
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/182716 | 2021-07-21 | |
https://www.ibm.com/support/pages/node/6233276 | 2021-07-21 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Business Automation Workflow Search vendor "Ibm" for product "Business Automation Workflow" | 18.0.0.1 Search vendor "Ibm" for product "Business Automation Workflow" and version "18.0.0.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Business Automation Workflow Search vendor "Ibm" for product "Business Automation Workflow" | 19.0.0.3 Search vendor "Ibm" for product "Business Automation Workflow" and version "19.0.0.3" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Business Process Manager Search vendor "Ibm" for product "Business Process Manager" | >= 8.5.5.0 < 8.5.7.0 Search vendor "Ibm" for product "Business Process Manager" and version " >= 8.5.5.0 < 8.5.7.0" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Business Process Manager Search vendor "Ibm" for product "Business Process Manager" | 8.6.0.0 Search vendor "Ibm" for product "Business Process Manager" and version "8.6.0.0" | - |
Affected
|