CVE-2021-20566: High severity IBM Resilient Security Orchestration Automation And Response vulnerability
Published Jun 8, 2021
·Updated
IBM Resilient OnPrem uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Other sources
IBM Resilient SOAR V38.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 199238.
Affected Software
3 affected components
IBM Resilient Security Orchestration Automation And Response=38.0
redhat Linux
IBM Resilient OnPrem<=IBM Security SOAR
Remediation
Patch Available
Event History
Jun 8, 2021
CVE Published
via IBM·12:00 AM
Jun 16, 2021
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-20566.
2
What software is affected by this vulnerability?
IBM Resilient OnPrem (IBM Security SOAR) version 38.0 is affected by this vulnerability.
3
What is the severity of CVE-2021-20566?
The severity of CVE-2021-20566 is high with a CVSS score of 7.5.
4
What is the impact of this vulnerability?
This vulnerability could allow an attacker to decrypt highly sensitive information.
5
Are there any known fixes or workarounds for this vulnerability?
IBM has provided a fix for this vulnerability. Please refer to the IBM support page for more details.