CVE-2020-4499

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/10/2020
Last modified:
21/07/2021

Description

IBM Security Access Manager 9.0.7 and IBM Security Verify Access 10.0.0 could allow an unauthorized public Oauth client to bypass some or all of the authentication checks and gain access to applications. IBM X-Force ID: 182216.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:security_access_manager:*:*:*:*:*:*:*:* 9.0.7.0 (including) 9.0.7.2 (excluding)
cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* 10.0.0 (including) 10.0.0.1 (excluding)