CVE-2020-4611: High severity ibm data risk manager vulnerability
Published Sep 22, 2020
·Updated
IBM Data Risk Manager (iDNA) 2.0.6 could allow an authenticated user to bypass security and execute actions reserved for admins. IBM X-Force ID: 184922.
Affected Software
2 affected componentsFixes available
IBM Data Risk Manager<2.0.6.4
IBM Data Risk Manager<=2.0.6
Remediation
Patch Available
Event History
Sep 22, 2020
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-4611?
The severity of CVE-2020-4611 is high, with a severity value of 8.8.
2
How can an authenticated user bypass security in IBM Data Risk Manager (iDNA) 2.0.6?
An authenticated user can bypass security in IBM Data Risk Manager (iDNA) 2.0.6 by exploiting this vulnerability.
3
What actions can an authenticated user execute by exploiting CVE-2020-4611?
An authenticated user can execute actions reserved for admins by exploiting CVE-2020-4611 in IBM Data Risk Manager (iDNA) 2.0.6.
4
Is there a patch available for IBM Data Risk Manager (iDNA) 2.0.6 to fix CVE-2020-4611?
Yes, a patch is available to fix CVE-2020-4611 in IBM Data Risk Manager (iDNA) 2.0.6.
5
Where can I find more information about CVE-2020-4611?
You can find more information about CVE-2020-4611 on the IBM X-Force Exchange website and the IBM Support page.