490
VMScore

CVE-2020-4421

Published: 06/05/2020 Updated: 21/07/2021
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
CVSS v3 Base Score: 5.4 | Impact Score: 2.5 | Exploitability Score: 2.8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N

Vulnerability Summary

IBM WebSphere Application Liberty 19.0.0.5 up to and including 20.0.0.4 could allow an authenticated user using openidconnect to spoof another users identify. IBM X-Force ID: 180084.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere application server

Vendor Advisories

Synopsis Important: Open Liberty 20005 Runtime security update Type/Severity Security Advisory: Important Topic Open Liberty 20005 Runtime is now available from the Customer PortalRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring S ...