CVE-2021-20510: Medium severity IBM Security Verify Access Docker vulnerability
Published May 17, 2021
·Updated
IBM Security Access Manager Docker stores user credentials in plain clear text which can be read by a local user.
Other sources
IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 198299
Affected Software
3 affected components
IBM Security Verify Access Docker<=10.0.0
IBM Security Verify Access=10.0.0
Docker docker
Remediation
Patch Available
Event History
May 17, 2021
CVE Published
via IBM·12:00 AM
Jul 15, 2021
CVE Published
via MITRE·05:15 PM
Data Sourced
via MITRE·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-20510.
2
What is the title of this vulnerability?
The title of this vulnerability is 'IBM Security Access Manager Docker stores user credentials in plain clear text which can be read by ...'
3
What is the severity of CVE-2021-20510?
The severity of CVE-2021-20510 is medium with a CVSS score of 6.8.
4
What is the affected software for CVE-2021-20510?
The affected software for CVE-2021-20510 is IBM Security Verify Access Docker 10.0.0.
5
How can the vulnerability be exploited?
The vulnerability can be exploited by a local user who has access to the plain text user credentials stored in the Docker container.