cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-45672,https://securityvulnerability.io/vulnerability/CVE-2024-45672,Excessive Privileges in IBM Security Verify Bridge Affecting Local User Access,"IBM Security Verify Bridge versions 1.0.0 to 1.0.15 contain a vulnerability that permits local privileged users to overwrite files due to excessive permissions granted to the agent. This flaw could lead to potential disruptions and may cause a denial of service, impacting overall system availability and integrity.",IBM,Security Verify Bridge,6,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,false,,2025-01-23T17:31:58.939Z,0 CVE-2021-38864,https://securityvulnerability.io/vulnerability/CVE-2021-38864,Improper Certificate Validation in IBM Security Verify Bridge,"IBM Security Verify Bridge version 1.0.5.0 is susceptible to improper certificate validation, which could potentially allow unauthorized users to access sensitive information. This vulnerability could compromise the confidentiality of data handled by the bridge, making it critical for users to assess their security posture and apply necessary mitigations. More details about the vulnerability can be found on the IBM support page and the IBM X-Force Exchange.",IBM,Security Verify Bridge,6.1,MEDIUM,0.0012000000569969416,false,,false,false,false,,,false,false,,2021-09-23T17:15:00.000Z,0 CVE-2021-20435,https://securityvulnerability.io/vulnerability/CVE-2021-20435,Local Certificate Validation Flaw in IBM Security Verify Bridge,"IBM Security Verify Bridge version 1.0.5.0 is susceptible to a vulnerability where it fails to properly validate certificates. This security weakness could enable a local attacker to exploit the system by accessing sensitive information that could facilitate further attacks. To mitigate potential risks, affected users should promptly apply updates and patches provided by IBM to secure their installations.",IBM,Security Verify Bridge,2.5,LOW,0.0004199999966658652,false,,false,false,false,,,false,false,,2021-09-23T17:15:00.000Z,0 CVE-2021-20434,https://securityvulnerability.io/vulnerability/CVE-2021-20434,Control of Sensitive Information in IBM Security Verify Bridge by IBM,"IBM Security Verify Bridge version 1.0.5.0 has a vulnerability allowing local users to access sensitive user credentials stored in plain text. This design flaw can lead to unauthorized access and exploitation of sensitive information, potentially impacting the security of the application and its users. Proper measures should be implemented to secure credential storage to mitigate exposure to local users.",IBM,Security Verify Bridge,4.1,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2021-09-23T17:15:00.000Z,0 CVE-2021-38863,https://securityvulnerability.io/vulnerability/CVE-2021-38863,Credential Storage Vulnerability in IBM Security Verify Bridge,"IBM Security Verify Bridge version 1.0.5.0 has a security issue where user credentials are stored in clear text. This flaw allows anyone with local authentication to access sensitive credential information, potentially leading to unauthorized actions or data breaches. Proper handling and storage of credentials are essential to safeguarding user data, and affected users should take swift action to mitigate risks associated with this vulnerability.",IBM,Security Verify Bridge,6.5,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-09-23T17:15:00.000Z,0 CVE-2021-20442,https://securityvulnerability.io/vulnerability/CVE-2021-20442,,"IBM Security Verify Bridge contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 196618.",IBM,Security Verify Bridge,5.9,MEDIUM,0.0007900000200606883,false,,false,false,false,,,false,false,,2021-03-03T17:15:00.000Z,0 CVE-2021-20441,https://securityvulnerability.io/vulnerability/CVE-2021-20441,,IBM Security Verify Bridge uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 196617.,IBM,Security Verify Bridge,5.9,MEDIUM,0.0010100000072270632,false,,false,false,false,,,false,false,,2021-03-03T17:15:00.000Z,0