Vulnerability Details CVE-2020-4587
IBM Sterling Connect:Direct for UNIX 4.2.0, 4.3.0, 6.0.0, and 6.1.0 is vulnerable to a stack based buffer ovreflow, caused by improper bounds checking. A local attacker could manipulate CD UNIX to obtain root provileges. IBM X-Force ID: 184578.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.2%
CVSS Severity
CVSS v3 Score 8.4
CVSS v2 Score 7.2
Products affected by CVE-2020-4587
-
cpe:2.3:a:ibm:connect:direct
-
cpe:2.3:a:ibm:sterling_connect:direct