Medium severity5.9NVD Advisory· Published Nov 5, 2021· Updated Jun 17, 2026
CVE-2021-29753
CVE-2021-29753
Description
IBM Business Automation Workflow 18. 19, 20, 21, and IBM Business Process Manager 8.5 and d8.6 transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:-:*:*:*+ 5 more
- cpe:2.3:a:ibm:business_automation_workflow:18.0.0.0:*:*:*:-:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:19.0.0.0:*:*:*:-:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:20.0.0.0:*:*:*:-:*:*:*
- cpe:2.3:a:ibm:business_automation_workflow:21.0.0.0:*:*:*:-:*:*:*
- (no CPE)range: 18.0, 19.0, 20.0, 21.0
- (no CPE)range: 18.0
cpe:2.3:a:ibm:business_process_manager:8.5.0.0:*:*:*:-:*:*:*+ 3 more
- cpe:2.3:a:ibm:business_process_manager:8.5.0.0:*:*:*:-:*:*:*
- cpe:2.3:a:ibm:business_process_manager:8.6.0.0:-:*:*:-:*:*:*
- (no CPE)range: 8.5, 8.6
- (no CPE)range: 8.5
Patches
Vulnerability mechanics
References
2- exchange.xforce.ibmcloud.com/vulnerabilities/201919nvdVDB EntryVendor Advisory
- www.ibm.com/support/pages/node/6513703nvdVendor Advisory
News mentions
0No linked articles in our index yet.