| |
Vulnerability CVE-2017-1597
Published: 2018-12-17
Description: |
IBM Security Guardium 10.0, 10.0.1, 10.1, 10.1.2, 10.1.3, 10.1.4, and 10.5 Database Activity Monitor does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 132610. |
Type:
CWE-521 (Weak Password Requirements)
CVSS2 => (AV:N/AC:L/Au:N/C:P/I:N/A:N)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
5/10 |
2.9/10 |
10/10 |
Exploit range |
Attack complexity |
Authentication |
Remote |
Low |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Partial |
None |
None |
References: |
http://www.securityfocus.com/bid/106236
https://exchange.xforce.ibmcloud.com/vulnerabilities/132610
https://www.ibm.com/support/docview.wss?uid=swg22014231
|
|
|
Copyright 2024, cxsecurity.com
|
|
|