First published: Tue Aug 10 2021(Updated: )
IBM Security Guardium 11.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 196314.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | <=11.2 | |
IBM InfoSphere Guardium z/OS | <=11.3 | |
IBM InfoSphere Guardium z/OS | =11.2 | |
Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20427 is considered a moderate severity vulnerability due to the potential for remote attackers to brute force account credentials.
To fix CVE-2021-20427, adjust the account lockout settings to implement more stringent controls.
CVE-2021-20427 affects IBM Security Guardium 11.2 and also impacts versions up to 11.3.
Yes, CVE-2021-20427 can be exploited remotely, allowing attackers to attempt brute force attacks on account credentials.
CVE-2021-20427 allows attackers to conduct brute force attacks on user accounts due to inadequate lockout settings.