CVE-2021-29726
Published: May 17, 2022
Modified: Sep 16, 2024
CVSS v3.0
5.3
Description
IBM Sterling Secure Proxy 6.0.3 and IBM Secure External Authentication Server 6.0.3 does not properly ensure that a certificate is actually associated with the host due to improper validation of certificates. IBM X-Force ID: 201104.
| Vendor | Product | Versions |
|---|---|---|
IBM | Secure External Authentication Server | affected 6.0.3 |
IBM | Sterling Secure Proxy | affected 6.0.3 |
CVSS v3.0 Details
CVSS v3.0 Vector
CVSS:3.0/S:U/AC:L/UI:N/PR:N/A:N/AV:N/C:N/I:L/RC:C/RL:O/E:U
Scope
Attack Complexity
User Interaction
Privileges Required
Availability
Attack Vector
Confidentiality
Integrity
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now