IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 could allow an unauthorized public Oauth client to bypass some or all of the authentication checks and gain access to applications. IBM X-Force ID: 182216.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/182216 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6348046 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2020-10-15 13:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-4499
Mitre link : CVE-2020-4499
CVE.ORG link : CVE-2020-4499
JSON object : View
Products Affected
ibm
- security_verify_access
- security_access_manager
CWE