First published: Thu Oct 05 2023(Updated: )
IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain version number information using a specially crafted HTTP request that could be used in further attacks against the system. IBM X-Force ID: 207899.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Privilege On-Premises | <=All | |
IBM Security Verify Privilege On-Premises | <11.5 | |
Apple macOS | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for IBM Security Verify Privilege On-Premises is CVE-2021-38859.
The severity of CVE-2021-38859 is medium with a CVSS score of 4.3.
A user can exploit CVE-2021-38859 by sending a specially crafted HTTP request to obtain version number information.
The affected software for CVE-2021-38859 is IBM Security Verify Privilege On-Premises version All.
You can find more information about CVE-2021-38859 at the following references: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/207899) [Reference 2](https://www.ibm.com/support/pages/node/7047202)