CVE-2021-29687: Medium severity IBM ISIM vulnerability
IBM Security Identity Manager 7.0.2 could allow a remote user to enumerate usernames due to a difference of responses from valid and invalid login attempts. IBM X-Force ID: 200018
Other sources
IBM Security Identity Manager could allow a remote user to enumerate usernames due to a difference of responses from valid and invalid login attempts.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-29687?
CVE-2021-29687 is a vulnerability in IBM Security Identity Manager that allows a remote user to enumerate usernames due to a difference in responses from valid and invalid login attempts.
What is the severity of CVE-2021-29687?
CVE-2021-29687 has a severity rating of 5.3 (Medium).
Which software versions are affected by CVE-2021-29687?
CVE-2021-29687 affects IBM Security Identity Manager versions 6.0.0 and 6.0.2.
How can I mitigate CVE-2021-29687?
To mitigate CVE-2021-29687, IBM recommends applying the latest patches and updates for IBM Security Identity Manager.
Where can I find more information about CVE-2021-29687?
More information about CVE-2021-29687 can be found on the IBM X-Force Exchange website and in IBM's support documentation.