VYPR
Medium severity5.9NVD Advisory· Published Nov 5, 2021· Updated Jun 17, 2026

CVE-2021-29753

CVE-2021-29753

Description

IBM Business Automation Workflow 18. 19, 20, 21, and IBM Business Process Manager 8.5 and d8.6 transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:-:*:*:*+ 5 more
    • cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:-:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:19.0.0.0:*:*:*:-:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:20.0.0.0:*:*:*:-:*:*:*
    • cpe:2.3:a:ibm:business_automation_workflow:21.0.0.0:*:*:*:-:*:*:*
    • (no CPE)range: 18.0, 19.0, 20.0, 21.0
    • (no CPE)range: 18.0
  • cpe:2.3:a:ibm:business_process_manager:8.5.0.0:*:*:*:-:*:*:*+ 3 more
    • cpe:2.3:a:ibm:business_process_manager:8.5.0.0:*:*:*:-:*:*:*
    • cpe:2.3:a:ibm:business_process_manager:8.6.0.0:-:*:*:-:*:*:*
    • (no CPE)range: 8.5, 8.6
    • (no CPE)range: 8.5

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.