IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains. IBM X-Force ID: 196344.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2021-04-26T16:30:43.094832Z
Updated: 2024-09-16T16:18:23.973Z
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20432
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-04-26T17:15:07.947
Modified: 2024-11-21T05:46:35.170
Link: CVE-2021-20432
Redhat
No data.