CVE-2021-29904

Severity
5.5MEDIUM
EPSS
0.0%
top 94.19%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 23
Latest updateMay 24

Description

IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI displays user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 207610.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

NVDibm/jazz1.1.3.10

Patches

🔴Vulnerability Details

2
GHSA
GHSA-23fg-rq88-2h56: IBM Jazz for Service Management 12022-05-24
CVEList
CVE-2021-29904: IBM Jazz for Service Management 12021-09-23