CVE-2021-20439: High severity IBM Security Verify Access Docker vulnerability
IBM Security Access Manager 9.0 and IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by an unauthorized user.
Other sources
IBM Security Access Manager Docker stores user credentials in plain clear text which can be read by an unauthorized user.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-20439?
CVE-2021-20439 is a vulnerability in IBM Security Access Manager and IBM Security Verify Access Docker that allows unauthorized users to read user credentials stored in plain text.
How severe is CVE-2021-20439?
CVE-2021-20439 has a severity level of 7.5 (High).
How does CVE-2021-20439 affect IBM Security Access Manager?
CVE-2021-20439 affects IBM Security Access Manager versions up to and including 9.0, allowing unauthorized access to user credentials.
How does CVE-2021-20439 affect IBM Security Verify Access Docker?
CVE-2021-20439 affects IBM Security Verify Access Docker version 10.0.0, allowing unauthorized access to user credentials.
How can I fix CVE-2021-20439?
To fix CVE-2021-20439, IBM recommends applying the necessary security patches or updates provided by IBM Security Access Manager and IBM Security Verify Access Docker.