CVE-2021-20483: SSRF
IBM Security Identity Manager 6.0.2 is vulnerable to server-side request forgery (SSRF). By sending a specially crafted request, a remote authenticated attacker could exploit this vulnerability to obtain sensitive data. IBM X-Force ID: 197591.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-20483?
CVE-2021-20483 is a vulnerability in IBM Security Identity Manager 6.0.2 that allows a remote authenticated attacker to perform server-side request forgery (SSRF) and access sensitive data.
How does the vulnerability in IBM Security Identity Manager 6.0.2 work?
The vulnerability in IBM Security Identity Manager 6.0.2 allows an attacker to send a specially crafted request to exploit a server-side request forgery (SSRF) vulnerability and obtain sensitive data.
What is the severity level of CVE-2021-20483?
CVE-2021-20483 has a severity level of 6.5 (medium).
What software versions are affected by CVE-2021-20483?
IBM Security Identity Manager 6.0.2 is affected by CVE-2021-20483.
How can I fix the vulnerability in IBM Security Identity Manager 6.0.2?
To fix the vulnerability in IBM Security Identity Manager 6.0.2, it is recommended to apply the latest security patches or updates provided by IBM.