Sensitive Information Exposure in IBM Guardium Data Encryption
CVE-2021-20414
4.4MEDIUM
Summary
IBM Guardium Data Encryption version 3.0.0.2 may inadvertently allow unauthorized users to exploit the system through brute-force attempts. This vulnerability arises from insufficient restrictions on user interactions, which could lead to the exposure of sensitive data. The lack of adequate safeguards places critical information at risk, highlighting the importance of applying security updates and implementing stringent security protocols.
Affected Version(s)
Guardium Data Encryption 3.0.0.2
References
CVSS V3.1
Score:
4.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved