CVE-2021-20439

Severity
7.5HIGH
EPSS
0.2%
top 57.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 15
Latest updateMay 24

Description

IBM Security Access Manager 9.0 and IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by an unauthorized user.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-wm4f-m9qr-q5j6: IBM Security Access Manager 92022-05-24
CVEList
CVE-2021-20439: IBM Security Access Manager 92021-07-15
CVE-2021-20439 (HIGH CVSS 7.5) | IBM Security Access Manager 9.0 and | cvebase.io