IBM Security Guardium has fixed these vulnerabilities
CVEID:CVE-2021-29773
**DESCRIPTION:**IBM Security Guardium could allow a remote authenticated attacker to obtain sensitive information or modify user details caused by an insecure direct object vulnerability (IDOR).
CVSS Base score: 5.4
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/202865 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N)
CVEID:CVE-2021-2161
**DESCRIPTION:**An unspecified vulnerability in Java SE related to the Libraries component could allow an unauthenticated attacker to cause no confidentiality impact, high integrity impact, and no availability impact.
CVSS Base score: 5.9
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/200290 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N)
Affected Product(s) | Version(s) |
---|---|
IBM Security Guardium | 10.5 |
IBM Security Guardium| 10.6
IBM Security Guardium| 11.0
IBM Security Guardium| 11.1
IBM Security Guardium| 11.2
IBM Security Guardium| 11.3
Product | Versions | Fix |
---|---|---|
IBM Security Guardium | 10.5 | |
IBM Security Guardium| 10.6
|
IBM Security Guardium| 11.0
|
IBM Security Guardium| 11.1
|
IBM Security Guardium| 11.2
|
IBM Security Guardium| 11.3
|
None