CVE-2021-39064: High severity ibm storage copy data management vulnerability
IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules and incorrectly handles default credentials for the Spectrum Copy Data Management Admin console. IBM X-Force ID: 214957.
Other sources
IBM Spectrum Copy Data Management has weak authentication and password rules and incorrectly handles default credentials for the Spectrum Copy Data Management Admin console.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2021-39064.
What is the title of this vulnerability?
The title of this vulnerability is 'IBM Spectrum Copy Data Management has weak authentication and password rules and incorrectly handles default credentials'.
What is the affected software?
The affected software is IBM Spectrum Copy Data Management version 2.2.13 and earlier.
What is the severity level of this vulnerability?
The severity level of this vulnerability is high (7.5).
How can I fix this vulnerability?
To fix this vulnerability, update IBM Spectrum Copy Data Management to a version higher than 2.2.13.