CVE-2021-29728: Medium severity IBM Secure External Authentication Server vulnerability
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 201160.
Other sources
IBM Sterling Secure Proxy contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-29728.
What is the severity level of CVE-2021-29728?
The severity level of CVE-2021-29728 is medium (4.9).
Which IBM products are affected by CVE-2021-29728?
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, IBM Sterling External Authentication Server 2.4.3.2, 6.0.1.0, and 6.0.2.0 are affected by CVE-2021-29728.
What is the impact of CVE-2021-29728?
CVE-2021-29728 allows an attacker to gain unauthorized access, intercept communication, or manipulate internal data.
How can I fix CVE-2021-29728?
To fix CVE-2021-29728, apply the patches provided by IBM.