CVE-2020-4686
 
Severity Score
8.1
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678.
IBM Spectrum Virtualize versión 8.3.1, podría permitir a un usuario autenticado remoto por medio de LDAP escalar sus privilegios y realizar acciones a las que no debería tener acceso. IBM X-Force ID: 186678.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2019-12-30 CVE Reserved
- 2020-08-17 CVE Published
- 2024-09-16 CVE Updated
- 2024-09-26 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.ibm.com/support/pages/node/6260199 | 2021-07-21 |
URL | Date | SRC |
---|---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/186678 | 2021-07-21 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Flashsystem V5000 Firmware Search vendor "Ibm" for product "Flashsystem V5000 Firmware" | 8.3.1 Search vendor "Ibm" for product "Flashsystem V5000 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Flashsystem V5000 Search vendor "Ibm" for product "Flashsystem V5000" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Flashsystem V7200 Firmware Search vendor "Ibm" for product "Flashsystem V7200 Firmware" | 8.3.1 Search vendor "Ibm" for product "Flashsystem V7200 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Flashsystem V7200 Search vendor "Ibm" for product "Flashsystem V7200" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Flashsystem V9000 Firmware Search vendor "Ibm" for product "Flashsystem V9000 Firmware" | 8.3.1 Search vendor "Ibm" for product "Flashsystem V9000 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Flashsystem V9000 Search vendor "Ibm" for product "Flashsystem V9000" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Flashsystem V9100 Firmware Search vendor "Ibm" for product "Flashsystem V9100 Firmware" | 8.3.1 Search vendor "Ibm" for product "Flashsystem V9100 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Flashsystem V9100 Search vendor "Ibm" for product "Flashsystem V9100" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Flashsystem V9200 Firmware Search vendor "Ibm" for product "Flashsystem V9200 Firmware" | 8.3.1 Search vendor "Ibm" for product "Flashsystem V9200 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Flashsystem V9200 Search vendor "Ibm" for product "Flashsystem V9200" | - | - |
Safe
|
Ibm Search vendor "Ibm" | San Volume Controller Firmware Search vendor "Ibm" for product "San Volume Controller Firmware" | 8.3.1 Search vendor "Ibm" for product "San Volume Controller Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | San Volume Controller Search vendor "Ibm" for product "San Volume Controller" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Storwize V5000 Firmware Search vendor "Ibm" for product "Storwize V5000 Firmware" | 8.3.1 Search vendor "Ibm" for product "Storwize V5000 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Storwize V5000 Search vendor "Ibm" for product "Storwize V5000" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Storwize V5000e Firmware Search vendor "Ibm" for product "Storwize V5000e Firmware" | 8.3.1 Search vendor "Ibm" for product "Storwize V5000e Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Storwize V5000e Search vendor "Ibm" for product "Storwize V5000e" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Storwize V5100 Firmware Search vendor "Ibm" for product "Storwize V5100 Firmware" | 8.3.1 Search vendor "Ibm" for product "Storwize V5100 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Storwize V5100 Search vendor "Ibm" for product "Storwize V5100" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Storwize V7000 Firmware Search vendor "Ibm" for product "Storwize V7000 Firmware" | 8.3.1 Search vendor "Ibm" for product "Storwize V7000 Firmware" and version "8.3.1" | - |
Affected
| in | Ibm Search vendor "Ibm" | Storwize V7000 Search vendor "Ibm" for product "Storwize V7000" | - | - |
Safe
|
Ibm Search vendor "Ibm" | Spectrum Virtualize Search vendor "Ibm" for product "Spectrum Virtualize" | 8.3.1 Search vendor "Ibm" for product "Spectrum Virtualize" and version "8.3.1" | - |
Affected
| ||||||
Ibm Search vendor "Ibm" | Spectrum Virtualize Search vendor "Ibm" for product "Spectrum Virtualize" | 8.3.1 Search vendor "Ibm" for product "Spectrum Virtualize" and version "8.3.1" | public_cloud |
Affected
|