Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-77467
HistorySep 24, 2021 - 12:00 a.m.

IBM Security Verify Bridge Information Disclosure Vulnerability (CNVD-2021-77467)

2021-09-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.0004 Low

EPSS

Percentile

5.1%

IBM Security Verify Bridge is an IBM application component of International Business Machines (IBM), Inc. Provides IBM Cloud access to user attributes and authentication that are controlled by the customer’s local LDAP or Active Directory.IBM Security Verify Bridge is vulnerable to an information disclosure vulnerability that stems from IBM Security Verify Bridge 1.0. 5.0 does not properly validate certificates, and a local attacker could exploit the vulnerability to obtain sensitive information for further attacks on the system.

CPENameOperatorVersion
ibm security verify bridge 1.eq0.5.0

0.0004 Low

EPSS

Percentile

5.1%

Related for CNVD-2021-77467