7.5
CVSSv3

CVE-2020-4276

Published: 26/03/2020 Updated: 21/07/2021
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional is vulnerable to a privilege escalation vulnerability when using token-based authentication in an admin request over the SOAP connector. X-Force ID: 175984.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server

Github Repositories

欢迎使用Nexpose_vck 本项目本意是为Nexpose/InsightVM产品新增不被其内置的漏洞检测项,以满足广大客户需要,本项目为本人共享,无任何利益驱动。 Nexpose/InsightVM Nexpose/InsightVM是Rapid7的漏洞风险管理产品,Rapid7是一家很著名的安全公司,甚至其Metasploit产品比公司名本身更为出名。 Nexpose/Insig