Description
IBM Security Risk Manager on CP4S 1.7.0.0 stores user credentials in plain clear text which can be read by a an authenticatedl privileged user. IBM X-Force ID: 209940.
References
https://exchange.xforce.ibmcloud.com/vulnerabilities/209940
VDB EntryVendor Advisory
https://www.ibm.com/support/pages/node/6505281
PatchVendor Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
4.9 · Medium
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2021-10-19T16:15:07.737
3 years agoLast modified
2021-10-22T19:05:47.753
3 years ago