CVE-2021-29723: High severity ibm secure external authentication server vulnerability
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.
Other sources
IBM Sterling Secure Proxy uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-29723?
CVE-2021-29723 is a vulnerability in IBM Sterling Secure Proxy that uses weaker than expected cryptographic algorithms, allowing an attacker to decrypt sensitive information.
Which versions of IBM Sterling Secure Proxy are affected by CVE-2021-29723?
IBM Sterling Secure Proxy versions 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 are affected by CVE-2021-29723.
What is the severity of CVE-2021-29723?
CVE-2021-29723 has a severity rating of 7.5 (high).
How can an attacker exploit CVE-2021-29723?
An attacker can exploit CVE-2021-29723 by using weaker cryptographic algorithms to decrypt highly sensitive information.
How can I fix CVE-2021-29723?
To fix CVE-2021-29723, update IBM Sterling Secure Proxy to a version that uses stronger cryptographic algorithms.