CVE-2021-39064

Severity
7.5HIGH
EPSS
0.2%
top 62.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 13
Latest updateDec 14

Description

IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules and incorrectly handles default credentials for the Spectrum Copy Data Management Admin console. IBM X-Force ID: 214957.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-q9m8-mcx4-3j84: IBM Spectrum Copy Data Management 22021-12-14
CVEList
CVE-2021-39064: IBM Spectrum Copy Data Management 22021-12-13