CVE-2020-8339 is a Cross-Site Scripting Inclusion (XSSI) vulnerability affecting the legacy IBM BladeCenter Advanced Management Module (AMM) web interface prior to version 3.68n. This medium-severity vulnerability (CVSS 6.1) could allow an authenticated user's AMM credentials to be disclosed if they are tricked into visiting a malicious website, requiring specific network knowledge for successful exploitation. While the attack complexity is low, it relies on user interaction and a susceptible browser, with impact limited to the user's normal access. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.68nCPE matchmatch criteria | cpe:2.3:o:ibm:bladecenter_advanced_management_module_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.