CVE-2020-4619: Medium severity ibm data risk manager vulnerability
Published Sep 22, 2020
·Updated
IBM Data Risk Manager (iDNA) 2.0.6 stores user credentials in plain in clear text which can be read by an authenticated user. IBM X-Force ID: 184976.
Affected Software
2 affected componentsFixes available
IBM Data Risk Manager<2.0.6.4
IBM Data Risk Manager<=2.0.6
Remediation
Patch Available
Event History
Sep 22, 2020
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-4619?
The severity of CVE-2020-4619 is medium with a severity value of 6.5.
2
How does IBM Data Risk Manager (iDNA) 2.0.6 store user credentials?
IBM Data Risk Manager (iDNA) 2.0.6 stores user credentials in plain text, which can be read by an authenticated user.
3
Can an authenticated user read user credentials in IBM Data Risk Manager (iDNA) 2.0.6?
Yes, an authenticated user can read user credentials in IBM Data Risk Manager (iDNA) 2.0.6.
4
Is there a patch available for CVE-2020-4619?
Yes, a patch is available for CVE-2020-4619. You can download it from the IBM Support website.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2020-4619?
The Common Weakness Enumeration (CWE) ID for CVE-2020-4619 is CWE-312.