Lucene search

K
nvd[email protected]NVD:CVE-2021-29913
HistoryOct 17, 2023 - 2:15 a.m.

CVE-2021-29913

2023-10-1702:15:09
CWE-20
web.nvd.nist.gov
5
ibm
security
verify
privilege
on-premise
vulnerability
input validation
x-force
authenticated user
sensitive information
unauthorized actions

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

30.5%

IBM Security Verify Privilege On-Premise 11.5 could allow an authenticated user to obtain sensitive information or perform unauthorized actions due to improper input validation. IBM X-Force ID: 207898.

Affected configurations

Nvd
Node
applemacosMatch-
OR
microsoftwindowsMatch-
AND
ibmsecurity_verify_privilege_on-premisesRange<11.5
VendorProductVersionCPE
applemacos-cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
microsoftwindows-cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
ibmsecurity_verify_privilege_on-premises*cpe:2.3:a:ibm:security_verify_privilege_on-premises:*:*:*:*:*:*:*:*

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

30.5%

Related for NVD:CVE-2021-29913