VYPR

Secure External Authentication Server

by IBM

CVEs (3)

  • CVE-2021-29725HigJul 15, 2021
    risk 0.49cvss 7.5epss 0.03

    IBM Secure External Authentication Server 2.4.3.2, 6.0.1, 6.0.2 and IBM Secure Proxy 3.4.3.2, 6.0.1, 6.0.2 could allow a remote user to consume resources causing a denial of service due to a resource leak.

  • CVE-2021-29726MedMay 17, 2022
    risk 0.35cvss 5.3epss 0.01

    IBM Sterling Secure Proxy 6.0.3 and IBM Secure External Authentication Server 6.0.3 does not properly ensure that a certificate is actually associated with the host due to improper validation of certificates. IBM X-Force ID: 201104.

  • CVE-2021-29749MedJul 15, 2021
    risk 0.35cvss 5.4epss 0.01

    IBM Secure External Authentication Server 6.0.2 and IBM Secure Proxy 6.0.2 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating…