Sensitive Information Exposure in IBM Security Identity Manager
CVE-2021-29692
3.1LOW
What is CVE-2021-29692?
IBM Security Identity Manager version 7.0.2 is susceptible to a vulnerability that allows remote attackers to gain access to sensitive information. This issue arises from the improper implementation of HTTP Strict Transport Security, which could enable attackers to execute man-in-the-middle techniques to intercept and exploit data. Organizations utilizing this product should consider immediate steps to implement security measures to mitigate potential risks.
Affected Version(s)
Security Identity Manager 7.0.2