Description
IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 126859.
CVSS breakdown
CVSS 3.0
Availability
None
Attack Complexity
High
Attack Vector
Network
Confidentiality
High
Integrity
None
Privileges Required
None
Scope
Unchanged
User Interaction
None
E
Unchanged
RC
Changed
RL
O
Affected products
- ibm / Security Identity Governance and Intelligence5.2 – 5.2
- ibm / Security Identity Governance and Intelligence5.2.1 – 5.2.1
- ibm / Security Identity Governance and Intelligence5.2.2 – 5.2.2
- ibm / Security Identity Governance and Intelligence5.2.2.1 – 5.2.2.1
- ibm / Security Identity Governance and Intelligence5.2.3 – 5.2.3
- ibm / Security Identity Governance and Intelligence5.2.3.1 – 5.2.3.1
- ibm / Security Identity Governance and Intelligence5.2.3.2 – 5.2.3.2