← back
CVE-2021-38957

CVE-2021-38957

CVSS 3.1 LOWEPSS 1.0%
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.1EPSS 1.0%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
07 Jan 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclose sensitive information due to hazardous input validation during QR code generation. IBM X-Force ID: 212040.
CVSS:3.0/S:U/PR:N/UI:R/AV:N/I:N/C:L/AC:H/A:N/E:U/RL:O/RC:C

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →