First published: Thu Jul 07 2022(Updated: )
IBM Engineering Requirements Quality Assistant could allow an authenticated user to obtain sensitive information due to improper client side validation.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Engineering Requirements Quality Assistant On-Premises | ||
<=All |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-29799 is a vulnerability in IBM Engineering Requirements Quality Assistant On-Premises that allows an authenticated user to obtain sensitive information due to improper client-side validation.
CVE-2021-29799 affects all versions of IBM Engineering Requirements Quality Assistant On-Premises.
CVE-2021-29799 has a severity rating of medium (6.5 out of 10).
An authenticated user can exploit CVE-2021-29799 by bypassing client-side validation to obtain sensitive information.
Yes, IBM has released a fix for CVE-2021-29799. Please refer to the IBM support page for more information.