First published: Wed May 04 2022(Updated: )
IBM Spectrum Virtualize 8.2, 8.3, and 8.4 could allow an attacker to allow unauthorized access due to the reuse of support generated credentials. IBM X-Force ID: 212609.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Virtualize | =8.2.0.0 | |
IBM Spectrum Virtualize | =8.3.0.0 | |
IBM Spectrum Virtualize | =8.4.0.0 | |
IBM Spectrum Virtualize | <=8.4 | |
IBM Spectrum Virtualize | <=8.3 | |
IBM Spectrum Virtualize | <=8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38969 is classified as a high severity vulnerability due to the potential for unauthorized access.
To remediate CVE-2021-38969, it is recommended to update IBM Spectrum Virtualize to a version that does not reuse support generated credentials.
IBM Spectrum Virtualize versions 8.2, 8.3, and 8.4 are affected by CVE-2021-38969.
CVE-2021-38969 can lead to unauthorized access, compromising data confidentiality and integrity.
There are no known workarounds for CVE-2021-38969; updating to a secure version of IBM Spectrum Virtualize is necessary.