CVE Published: 23/11/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: ibm |
Vendor: IBM |
Product: Spectrum Protect Operations Center Status : PUBLISHED
CVE-2020-4771 Description
IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.10.and 7.1.0.000 through 7.1.11 could allow a remote attacker to obtain sensitive information, caused by improper authentication of a websocket endpoint. By using known tools to subscribe to the websocket event stream, an attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 188993.