ibm-spectrum-cve20204703-file-upload (187188)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/187188 CVE-2020-4703
HIGH
Record summary
CVE-2020-4703 has a selected CVSS score of 8.0 (high).
Description
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 Administrative Console could allow an authenticated attacker to upload arbitrary files which could be execute arbitrary code on the vulnerable server. This vulnerability is due to an incomplete fix for CVE-2020-4470. IBM X-Force ID: 187188.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Spectrum Protect PlusBrowse IBM / Spectrum Protect Plus | CVE List | 10.1.0 | affected |
| 10.1.6 | affected |
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-4703 ibm.comConfirmation
https://www.ibm.com/support/pages/node/6328867