CVE-2021-20427: High severity ibm infosphere guardium z/os vulnerability
IBM Security Guardium 11.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 196314.
Other sources
IBM Security Guardium uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-20427?
CVE-2021-20427 is considered a moderate severity vulnerability due to the potential for remote attackers to brute force account credentials.
How do I fix CVE-2021-20427?
To fix CVE-2021-20427, adjust the account lockout settings to implement more stringent controls.
Which versions of IBM Security Guardium are affected by CVE-2021-20427?
CVE-2021-20427 affects IBM Security Guardium 11.2 and also impacts versions up to 11.3.
Can CVE-2021-20427 be exploited remotely?
Yes, CVE-2021-20427 can be exploited remotely, allowing attackers to attempt brute force attacks on account credentials.
What type of attacks does CVE-2021-20427 allow?
CVE-2021-20427 allows attackers to conduct brute force attacks on user accounts due to inadequate lockout settings.