CVE-2021-20435: Medium severity ibm security verify bridge vulnerability
IBM Security Verify Bridge 1.0.5.0 does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system. IBM X-Force ID: 196355.
Other sources
IBM Security Verify Bridge does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is IBM Security Verify Bridge vulnerability CVE-2021-20435?
IBM Security Verify Bridge 1.0.5.0 does not properly validate a certificate which could allow a local attacker to obtain sensitive information that could aid in further attacks against the system.
What is the severity level of IBM Security Verify Bridge vulnerability CVE-2021-20435?
The severity level of IBM Security Verify Bridge vulnerability CVE-2021-20435 is medium with a severity value of 5.5.
How can a local attacker exploit the IBM Security Verify Bridge vulnerability CVE-2021-20435?
A local attacker can exploit the IBM Security Verify Bridge vulnerability CVE-2021-20435 by obtaining sensitive information that could aid in further attacks against the system.
What software versions are affected by the IBM Security Verify Bridge vulnerability CVE-2021-20435?
All versions up to and including IBM Security Verify Bridge 1.0.5.0 are affected by the vulnerability CVE-2021-20435. Versions 1.0.6.0 and 1.0.7.0 are not affected.
How can I fix the IBM Security Verify Bridge vulnerability CVE-2021-20435?
To fix the IBM Security Verify Bridge vulnerability CVE-2021-20435, update to a version higher than 1.0.7.0.