Sensitive Information Exposure in IBM Guardium Data Encryption
CVE-2021-20414

4.4MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
12 July 2021

Summary

IBM Guardium Data Encryption version 3.0.0.2 may inadvertently allow unauthorized users to exploit the system through brute-force attempts. This vulnerability arises from insufficient restrictions on user interactions, which could lead to the exposure of sensitive data. The lack of adequate safeguards places critical information at risk, highlighting the importance of applying security updates and implementing stringent security protocols.

Affected Version(s)

Guardium Data Encryption 3.0.0.2

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.