TROYANOSYVIRUS
Back to CVEs

CVE-2020-4125

HIGH
8.1

Description

Using HCL Marketing Operations 9.1.2.4, 10.1.x, 11.1.0.x, a malicious attacker could download files from the RHEL environment by doing some modification in the link, giving the attacker access to confidential information.

CVE Details

CVSS v3.1 Score8.1
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published7/20/2020
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

ibm:marketing_operations

Weaknesses (CWE)

CWE-494

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.