CVE-2021-20412
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.9epss 0.9%
exploitation probability
0.9%top 41% of all CVEs
observed exploitation
nono source reports it
IBM Security Verify Information Queue 1.0.6 and 1.0.7 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 198192.
CVSS:3.0/S:U/AV:N/C:H/PR:N/UI:N/I:N/AC:H/A:N/RC:C/RL:O/E:U
Affected products
IBM · Security Verify Information Queue