High Severity

Security Bulletin: Static Credential Vulnerability in IBM Spectrum Protect Plus (CVE-2020-4854)

Share this post:

IBM Spectrum Protect Plus contains hard-coded credentials which could allow a remote attacker to gain elevated privileges. UPDATED: 24 February 2020 – Remediation/Fixes section updated with additional vSnap requirements.

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
IBM Spectrum Protect Plus 10.1.0-10.1.6

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6367823

More stories

Security Bulletin: Multiple Apache Tomcat Vulnerabilities Affect IBM Control Center

May 14, 2021 8:02 pm EDT | High Severity

Multiple Apache Tomcat vulnerabilities affect IBM Control Center. See vulnerability details for descriptions. ...read more


Security Bulletin: IBM Watson Discovery for IBM Cloud Pak for Data affected by vulnerability in FasterXML jackson-dataformat

May 14, 2021 8:01 pm EDT | High Severity

IBM Watson Discovery for IBM Cloud Pak for Data contains a vulnerable version of FasterXML jackson-dataformat. ...read more


Security Bulletin: Multiple CKEditor Vulnerabilities Affect IBM Control Center

May 14, 2021 8:01 pm EDT | High Severity

Muliple CKEditor vulnerablities affect IBM Control Center. See vulnerability details for descriptions. ...read more