cbcvebase.
CVE-2021-29749
published 2021-07-15

CVE-2021-29749: IBM Secure External Authentication Server 6.0.2 and IBM Secure Proxy 6.0.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated…

medium5.4CVSS 3.1
AVNACLPRLUINSUCLILAN
IBM Secure External Authentication Server 6.0.2 and IBM Secure Proxy 6.0.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 201777.

Affected

3 ranges
VendorProductVersion rangeFixed in
ibmsecure_external_authentication_server
ibmsecure_proxy
ibmsterling_secure_proxy