CVE Published: 02/06/2021 |
CVE Updated: 16/09/2024 |
CVE Year: 2020 Source: ibm |
Vendor: IBM |
Product: Engineering Test Management Status : PUBLISHED
CVE-2020-4495 Description
IBM Jazz Foundation and IBM Engineering products could allow a remote attacker to bypass security restrictions, caused by improper access control. By sending a specially-crafted request to the REST API, an attacker could exploit this vulnerability to bypass access restrictions, and execute arbitrary actions with administrative privileges. IBM X-Force ID: 182114.