CVE-2021-20389Insufficiently Protected Credentials in IBM Security Guardium

Severity
7.8HIGHNVD
EPSS
0.0%
top 91.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 24
Latest updateMay 24

Description

IBM Security Guardium 11.2 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 195770.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vhgq-g2vx-jxpj: IBM Security Guardium 112022-05-24
CVEList
CVE-2021-20389: IBM Security Guardium 112021-05-24
CVE-2021-20389 — Insufficiently Protected Credentials | cvebase