PT-2018-4105 · Ibm · Ibm Tivoli Remote Control+1
Publicado
2018-04-27
·
Atualizado
2018-06-04
·
CVE-2013-5461
CVSS v2.0
4.0
Média
| Vetor | AV:N/AC:L/Au:S/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Endpoint Manager for Remote Control versions 9.0.0 through 9.0.1
Tivoli Remote Control version 5.1.2
Description
The issue allows remote attackers to more easily decrypt passwords by leveraging access to stored hashes of partial passwords.
Recommendations
For IBM Endpoint Manager for Remote Control versions 9.0.0 through 9.0.1, update to a version that does not store multiple hashes of partial passwords to prevent easier decryption by attackers.
For Tivoli Remote Control version 5.1.2, update to a version that does not store multiple hashes of partial passwords to prevent easier decryption by attackers.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Endpoint Manager For Remote Control
Ibm Tivoli Remote Control