7.5
CVE-2017-1473
- EPSS 0.11%
- Published 23.04.2018 13:29:00
- Last modified 21.11.2024 03:21:55
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM Security Access Manager Appliance 8.0.0 through 8.0.1.6 and 9.0.0 through 9.0.3.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 128605.
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0.1
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0.2
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0.3
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0.4
Ibm ≫ Security Access Manager For Web Firmware Version8.0.0.5
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1.2
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1.3
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1.4
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1.5
Ibm ≫ Security Access Manager For Web Firmware Version8.0.1.6
Ibm ≫ Security Access Manager For Mobile Version8.0.0
Ibm ≫ Security Access Manager For Mobile Version8.0.0.1
Ibm ≫ Security Access Manager For Mobile Version8.0.0.2
Ibm ≫ Security Access Manager For Mobile Version8.0.0.3
Ibm ≫ Security Access Manager For Mobile Version8.0.0.4
Ibm ≫ Security Access Manager For Mobile Version8.0.0.5
Ibm ≫ Security Access Manager For Mobile Version8.0.1
Ibm ≫ Security Access Manager For Mobile Version8.0.1.2
Ibm ≫ Security Access Manager For Mobile Version8.0.1.3
Ibm ≫ Security Access Manager For Mobile Version8.0.1.4
Ibm ≫ Security Access Manager For Mobile Version8.0.1.5
Ibm ≫ Security Access Manager For Mobile Version8.0.1.6
Ibm ≫ Security Access Manager Firmware Version9.0.0
Ibm ≫ Security Access Manager Firmware Version9.0.0.1
Ibm ≫ Security Access Manager Firmware Version9.0.1.0
Ibm ≫ Security Access Manager Firmware Version9.0.2.0
Ibm ≫ Security Access Manager Firmware Version9.0.2.1
Ibm ≫ Security Access Manager Firmware Version9.0.3
Ibm ≫ Security Access Manager Firmware Version9.0.3.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.11% | 0.266 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-326 Inadequate Encryption Strength
The product stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required.