CVE-2021-39011: IBM Cloud Pak for Security information disclosure
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.6.0 stores potentially sensitive information in log files that could be read by a privileged user. IBM X-Force ID: 213645.
Other sources
IBM Cloud Pak for Security (CP4S) stores potentially sensitive information in log files that could be read by a privileged user.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Cloud Pak for Security (CP4S) vulnerability?
The vulnerability ID for this IBM Cloud Pak for Security (CP4S) vulnerability is CVE-2021-39011.
What is the severity rating of CVE-2021-39011?
CVE-2021-39011 has a severity rating of 4.9 (medium).
How does CVE-2021-39011 impact IBM Cloud Pak for Security (CP4S)?
CVE-2021-39011 allows a privileged user to potentially access sensitive information stored in log files in IBM Cloud Pak for Security (CP4S).
How can I fix CVE-2021-39011 in IBM Cloud Pak for Security (CP4S)?
To fix CVE-2021-39011 in IBM Cloud Pak for Security (CP4S), apply the necessary security patches or updates provided by IBM.
Where can I find more information about CVE-2021-39011?
You can find more information about CVE-2021-39011 on the IBM X-Force ID: 213645 page or the IBM support page.