{"containers":{"cna":{"affected":[{"product":"Spectrum Scale","vendor":"IBM","versions":[{"status":"affected","version":"5.1"}]},{"product":"Elastic Storage System","vendor":"IBM","versions":[{"status":"affected","version":"6.1"}]}],"datePublic":"2022-05-23T00:00:00.000Z","descriptions":[{"lang":"en","value":"A vulnerability in the Spectrum Scale 5.1 core component and IBM Elastic Storage System 6.1 could allow unauthorized access to user data or injection of arbitrary data in the communication protocol. IBM X-Force ID: 191600."}],"metrics":[{"cvssV3_0":{"attackComplexity":"HIGH","attackVector":"LOCAL","availabilityImpact":"NONE","baseScore":5.7,"baseSeverity":"MEDIUM","confidentialityImpact":"HIGH","exploitCodeMaturity":"UNPROVEN","integrityImpact":"LOW","privilegesRequired":"NONE","remediationLevel":"OFFICIAL_FIX","reportConfidence":"CONFIRMED","scope":"UNCHANGED","temporalScore":5,"temporalSeverity":"MEDIUM","userInteraction":"NONE","vectorString":"CVSS:3.0/PR:N/I:L/AC:H/S:U/C:H/A:N/UI:N/AV:L/E:U/RL:O/RC:C","version":"3.0"}}],"problemTypes":[{"descriptions":[{"description":"Obtain Information","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2022-05-24T16:20:16.000Z","orgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","shortName":"ibm"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"https://www.ibm.com/support/pages/node/6589109"},{"tags":["x_refsource_CONFIRM"],"url":"https://www.ibm.com/support/pages/node/6565399"},{"name":"ibm-spectrum-cve20204926-info-disc (191600)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/191600"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"psirt@us.ibm.com","DATE_PUBLIC":"2022-05-23T00:00:00","ID":"CVE-2020-4926","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Spectrum Scale","version":{"version_data":[{"version_value":"5.1"}]}},{"product_name":"Elastic Storage System","version":{"version_data":[{"version_value":"6.1"}]}}]},"vendor_name":"IBM"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"A vulnerability in the Spectrum Scale 5.1 core component and IBM Elastic Storage System 6.1 could allow unauthorized access to user data or injection of arbitrary data in the communication protocol. IBM X-Force ID: 191600."}]},"impact":{"cvssv3":{"BM":{"A":"N","AC":"H","AV":"L","C":"H","I":"L","PR":"N","S":"U","UI":"N"},"TM":{"E":"U","RC":"C","RL":"O"}}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Obtain Information"}]}]},"references":{"reference_data":[{"name":"https://www.ibm.com/support/pages/node/6589109","refsource":"CONFIRM","title":"IBM Security Bulletin 6589109 (Elastic Storage System)","url":"https://www.ibm.com/support/pages/node/6589109"},{"name":"https://www.ibm.com/support/pages/node/6565399","refsource":"CONFIRM","title":"IBM Security Bulletin 6565399 (Spectrum Scale)","url":"https://www.ibm.com/support/pages/node/6565399"},{"name":"ibm-spectrum-cve20204926-info-disc (191600)","refsource":"XF","title":"X-Force Vulnerability Report","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/191600"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-04T08:14:59.134Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://www.ibm.com/support/pages/node/6589109"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://www.ibm.com/support/pages/node/6565399"},{"name":"ibm-spectrum-cve20204926-info-disc (191600)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/191600"}]}]},"cveMetadata":{"assignerOrgId":"9a959283-ebb5-44b6-b705-dcc2bbced522","assignerShortName":"ibm","cveId":"CVE-2020-4926","datePublished":"2022-05-24T16:20:16.554Z","dateReserved":"2019-12-30T00:00:00.000Z","dateUpdated":"2024-09-16T16:17:59.228Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}