CVE-2021-39057
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4.2epss 0.5%
exploitation probability
0.5%top 61% of all CVEs
observed exploitation
nono source reports it
IBM Spectrum Protect Plus 10.1.0.0 through 10.1.8.x is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 214616.
CVSS:3.0/AV:N/UI:N/C:L/I:L/A:N/S:U/PR:L/AC:H/RC:C/E:U/RL:O
Affected products
IBM · Spectrum Protect Plus