CVE-2021-20410

IBM Security Verify Information Queue 1.0.6 and 1.0.7 sends user credentials in plain clear text which can be read by an authenticated user using man in the middle techniques. IBM X-Force ID: 198190.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:security_verify_information_queue:1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_verify_information_queue:1.0.7:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

History

21 Nov 2024, 05:46

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/196190 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/196190 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/6414773 - Patch, Vendor Advisory () https://www.ibm.com/support/pages/node/6414773 - Patch, Vendor Advisory

Information

Published : 2021-02-12 17:15

Updated : 2024-11-21 05:46


NVD link : CVE-2021-20410

Mitre link : CVE-2021-20410

CVE.ORG link : CVE-2021-20410


JSON object : View

Products Affected

ibm

  • security_verify_information_queue

linux

  • linux_kernel
CWE
CWE-522

Insufficiently Protected Credentials