Vulnerability Description
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 201160.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Sterling External Authentication Server | 2.4.3.2 |
| Ibm | Sterling Secure Proxy | 3.4.3.2 |
| Hp | Hp-Ux | - |
| Ibm | Aix | - |
| Ibm | Linux On Ibm Z | - |
| Linux | Linux Kernel | - |
| Microsoft | Windows | - |
| Oracle | Solaris | - |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/201160VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6484681PatchVendor Advisory
- https://www.ibm.com/support/pages/node/6484685PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/201160VDB EntryVendor Advisory
- https://www.ibm.com/support/pages/node/6484681PatchVendor Advisory
- https://www.ibm.com/support/pages/node/6484685PatchVendor Advisory
FAQ
What is CVE-2021-29728?
CVE-2021-29728 is a vulnerability with a CVSS score of 4.9 (MEDIUM). IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound commun...
How severe is CVE-2021-29728?
CVE-2021-29728 has been rated MEDIUM with a CVSS base score of 4.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-29728?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Sterling External Authentication Server, Ibm Sterling Secure Proxy, Hp Hp-Ux, Ibm Aix, Ibm Linux On Ibm Z.