ibm security-identity-governance-intelligence CVE-2020-4233 is a vulnerability in IBM Security Identity Governance Intelligence
Published on May 28, 2020

IBM Security Identity Governance and Intelligence 5.2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to set the secure flag for the session cookie in SSL mode. By intercepting its transmission within an HTTP session, an attacker could exploit this vulnerability to capture the cookie and obtain sensitive information. IBM X-Force ID: 175360.

NVD


Products Associated with CVE-2020-4233

Want to know whenever a new CVE is published for IBM Security Identity Governance Intelligence? stack.watch will email you.

 

Affected Versions

IBM Security Identity Governance and Intelligence Version 5.2.6 is affected by CVE-2020-4233

Exploit Probability

EPSS
0.13%
Percentile
32.27%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.