Using HCL Marketing Operations 9.1.2.4, 10.1.x, 11.1.0.x, a malicious attacker could download files from the RHEL environment by doing some modification in the link, giving the attacker access to confidential information.
References
Link | Resource |
---|---|
https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0080941 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-07-20 15:15
Updated : 2020-07-24 04:54
NVD link : CVE-2020-4125
Mitre link : CVE-2020-4125
JSON object : View
CWE
CWE-494
Download of Code Without Integrity Check
Products Affected
ibm
- marketing_operations