CVE-2021-38933: IBM Sterling Connect:Express for UNIX information disclosure
IBM Sterling Connect:Direct for UNIX 1.5 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 210574.
Other sources
IBM Sterling Connect:Direct uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-38933.
What is the severity of CVE-2021-38933?
The severity of CVE-2021-38933 is high with a severity value of 7.5.
What software is affected by CVE-2021-38933?
IBM Sterling Connect:Express for UNIX 1.5 and Ibm Sterling Connect are affected by CVE-2021-38933.
How can an attacker exploit CVE-2021-38933?
An attacker can exploit CVE-2021-38933 by using weaker than expected cryptographic algorithms to decrypt highly sensitive information.
Where can I find more information about CVE-2021-38933?
You can find more information about CVE-2021-38933 at the following references: [1](https://exchange.xforce.ibmcloud.com/vulnerabilities/210574) [2](https://www.ibm.com/support/pages/node/7010925)