Vulnerability Details CVE-2020-4686
IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform actions they should not have access to. IBM X-Force ID: 186678.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 42.8%
CVSS Severity
CVSS v3 Score 6.8
CVSS v2 Score 5.5
Products affected by CVE-2020-4686
-
cpe:2.3:a:ibm:spectrum_virtualize:8.3.1
-
cpe:2.3:h:ibm:flashsystem_v5000:-
-
cpe:2.3:h:ibm:flashsystem_v7200:-
-
cpe:2.3:h:ibm:flashsystem_v9000:-
-
cpe:2.3:h:ibm:flashsystem_v9100:-
-
cpe:2.3:h:ibm:flashsystem_v9200:-
-
cpe:2.3:h:ibm:san_volume_controller:-
-
cpe:2.3:h:ibm:storwize_v5000:-
-
cpe:2.3:h:ibm:storwize_v5000e:-
-
cpe:2.3:h:ibm:storwize_v5100:-
-
cpe:2.3:h:ibm:storwize_v7000:-
-
cpe:2.3:o:ibm:flashsystem_v5000_firmware:8.3.1
-
cpe:2.3:o:ibm:flashsystem_v7200_firmware:8.3.1
-
cpe:2.3:o:ibm:flashsystem_v9000_firmware:8.3.1
-
cpe:2.3:o:ibm:flashsystem_v9100_firmware:8.3.1
-
cpe:2.3:o:ibm:flashsystem_v9200_firmware:8.3.1
-
cpe:2.3:o:ibm:san_volume_controller_firmware:8.3.1
-
cpe:2.3:o:ibm:storwize_v5000_firmware:8.3.1
-
cpe:2.3:o:ibm:storwize_v5000e_firmware:8.3.1
-
cpe:2.3:o:ibm:storwize_v5100_firmware:8.3.1
-
cpe:2.3:o:ibm:storwize_v7000_firmware:8.3.1