First published: Mon May 17 2021(Updated: )
IBM Security Access Manager Docker stores user credentials in plain clear text which can be read by a local user.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access | =10.0.0 | |
Docker Docker | ||
<=10.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-20510.
The title of this vulnerability is 'IBM Security Access Manager Docker stores user credentials in plain clear text which can be read by ...'
The severity of CVE-2021-20510 is medium with a CVSS score of 6.8.
The affected software for CVE-2021-20510 is IBM Security Verify Access Docker 10.0.0.
The vulnerability can be exploited by a local user who has access to the plain text user credentials stored in the Docker container.