CVE-2021-38983
CVE-2021-38983
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.4EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Nov 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 212792.
CVSS:3.0/C:H/AV:N/UI:N/AC:H/PR:H/I:N/S:U/A:N/E:U/RL:O/RC:C
Affected products
IBM · Security Key Lifecycle Manager