Username Enumeration Vulnerability in IBM Guardium Data Encryption
CVE-2021-39021
3.7LOW
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 2 February 2022
What is CVE-2021-39021?
IBM Guardium Data Encryption version 5.0.0.2 is susceptible to a vulnerability that allows an unauthorized actor to observe different responses under varying circumstances. This behavior could potentially enable the enumeration of valid usernames, posing a risk to data security and user privacy. Organizations utilizing this product are advised to evaluate their exposure and implement the necessary security measures.
Affected Version(s)
Security Guardium Data Encryption 5.0.0.2