CVE-2021-20557: OS Command Injection
IBM Security Guardium 11.2 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 199184.
Other sources
IBM Security Guardium could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-20557?
CVE-2021-20557 is considered a critical vulnerability due to its potential for remote command execution on affected systems.
How do I fix CVE-2021-20557?
To fix CVE-2021-20557, upgrade IBM Security Guardium to version 11.3 or later.
Who is affected by CVE-2021-20557?
Affected users include those operating IBM Security Guardium versions 10.5 through 11.2.
Can CVE-2021-20557 lead to data breaches?
Yes, CVE-2021-20557 can potentially lead to data breaches as it allows attackers to execute arbitrary commands.
What type of attacks can exploit CVE-2021-20557?
CVE-2021-20557 can be exploited via remote authenticated attacks that send specially crafted requests.