First published: Thu Jul 29 2021(Updated: )
IBM Security Secret Server up to 11.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 199322.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Secret Server | <11.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20508.
The severity rating of CVE-2021-20508 is medium with a value of 4.3.
IBM Security Secret Server up to 11.0 is affected by CVE-2021-20508.
A remote attacker can exploit CVE-2021-20508 by obtaining sensitive information when a detailed technical error message is returned in the browser.
It is recommended to refer to the IBM Security Support website for the latest information on the availability of a fix for CVE-2021-20508.