CVE-2021-29722: High severity IBM Secure External Authentication Server vulnerability
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 201095.
Other sources
IBM Sterling Secure Proxy uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-29722.
What is the severity level of CVE-2021-29722?
The severity level of CVE-2021-29722 is high (7.5).
Which IBM products are affected by CVE-2021-29722?
IBM Sterling External Authentication Server versions 2.4.3.2, 6.0.1.0, and 6.0.2.0, as well as IBM Sterling Secure Proxy versions 3.4.3.2, 6.0.1, and 6.0.2 are affected by CVE-2021-29722.
What is the impact of CVE-2021-29722?
CVE-2021-29722 could allow an attacker to decrypt highly sensitive information.
How can I fix CVE-2021-29722?
To fix CVE-2021-29722, apply the patches provided by IBM for the affected products.