CVE-2021-20498: Infoleak
IBM Security Access Manager Docker reveals version information in HTTP requets that could be used in further attacks against the system.
Other sources
IBM Security Verify Access Docker 10.0.0 reveals version information in HTTP requests that could be used in further attacks against the system. IBM X-Force ID: 197972.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-20498.
What is the title of this vulnerability?
The title of this vulnerability is 'IBM Security Access Manager Docker reveals version information in HTTP requets that could be used in…'.
What is the severity of CVE-2021-20498?
The severity of CVE-2021-20498 is medium with a severity value of 5.3.
What is the affected software for this vulnerability?
The affected software for this vulnerability is IBM Security Verify Access Docker version 10.0.0.
How can this vulnerability be exploited?
This vulnerability can be exploited by using the version information revealed in HTTP requests to launch further attacks against the system.