PublicCVE

CVE-2020-4574

HIGH7.4

Description

IBM Tivoli Key Lifecycle Manager does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 184181.

CVSS breakdown

CVSS 3.0
Scope
Changed
User Interaction
Required
Privileges Required
None
Attack Vector
Network
Integrity
None
Confidentiality
High
Attack Complexity
Low
Availability
None
RC
Changed
RL
O
E
Unchanged
Updated 6m ago · 8 sources