CVE-2021-38947
- EPSS 0.11%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:16
IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 211242.
- EPSS 2.29%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:32
IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to execute arbitrary commands on the system, caused by improper validation of user-supplied input by the Spectrum Copy Data Management Admin Console login and uploadce...
CVE-2021-39064
- EPSS 0.16%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:31
IBM Spectrum Copy Data Management 2.2.13 and earlier has weak authentication and password rules and incorrectly handles default credentials for the Spectrum Copy Data Management Admin console. IBM X-Force ID: 214957.
CVE-2021-39058
- EPSS 0.11%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:31
IBM Spectrum Copy Data Management 2.2.13 and earlier uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 214617.
CVE-2021-39054
- EPSS 0.08%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:30
IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the vic...
CVE-2021-39053
- EPSS 0.18%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:30
IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to obtain sensitive information, caused by the improper handling of requests for Spectrum Copy Data Management Admin Console. By sending a specially-crafted request, a...
CVE-2021-39052
- EPSS 0.51%
- Veröffentlicht 13.12.2021 18:15:08
- Zuletzt bearbeitet 21.11.2024 06:18:30
IBM Spectrum Copy Data Management 2.2.13 and earlier could allow a remote attacker to access the Spring Boot console without authorization. IBM X-Force ID: 214523.