First published: Fri Sep 17 2021(Updated: )
IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 stores user credentials in plain clear text which can be read by an authenticated admin user. IBM X-Force ID: 204329.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Tivoli Netcool\/omnibus Webgui | >=8.1.0<8.1.0.24 | |
<=8.1.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-29811.
IBM Jazz for Service Management and IBM Tivoli Netcool/OMNIbus_GUI 8.1.0 are affected by this vulnerability.
The severity of CVE-2021-29811 is medium.
An authenticated admin user can read user credentials stored in plain clear text.
You can find more information about this vulnerability on the IBM X-Force ID page: https://exchange.xforce.ibmcloud.com/vulnerabilities/204329 and the IBM support page: https://www.ibm.com/support/pages/node/6490747.