Medium severity6.5NVD Advisory· Published Jan 7, 2021· Updated Jun 17, 2026
CVE-2020-4896
CVE-2020-4896
Description
IBM Emptoris Sourcing 10.1.0, 10.1.1, and 10.1.3 is vulnerable to web cache poisoning, caused by improper input validation by modifying HTTP request headers. IBM X-Force ID: 190987.
Affected products
3cpe:2.3:a:ibm:emptoris_sourcing:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:emptoris_sourcing:*:*:*:*:*:*:*:*range: >=10.1.0.0,<10.1.0.38
- (no CPE)range: 10.1.0, 10.1.1, 10.1.3
- (no CPE)range: 10.1.0
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/pages/node/6398284nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/190987nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.