IBM Cloud Pak for Security (CP4S) 1.7.2.0, 1.7.1.0, and 1.7.0.0 could allow an authenticated user to obtain sensitive information in HTTP responses that could be used in further attacks against the system. IBM X-Force ID: 213651.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/213651 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6529200 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-12-22 09:15
Updated : 2021-12-28 08:32
NVD link : CVE-2021-39013
Mitre link : CVE-2021-39013
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
ibm
- cloud_pak_for_security
redhat
- openshift