CVE-2021-38891
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.9epss 0.7%
exploitation probability
0.7%top 49% of all CVEs
observed exploitation
nono source reports it
IBM Sterling Connect:Direct Web Services 1.0 and 6.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 209508.
CVSS:3.0/PR:N/S:U/AC:H/UI:N/AV:N/A:N/C:H/I:N/RL:O/E:U/RC:C
Affected products
IBM · Connect:Direct Web Services