PT-2013-4773 · Ibm · Ibm Security Appscan Enterprise

Published

2013-10-25

·

Updated

2017-08-29

·

CVE-2013-3989

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Security AppScan Enterprise versions prior to 8.8
Description The issue allows remote authenticated users to obtain sensitive information by examining the response content, which contains a cleartext AppScan Source database password sent by the software. This could subsequently enable man-in-the-middle attacks.
Recommendations For versions prior to 8.8, update to version 8.8 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3989

Affected Products

Ibm Security Appscan Enterprise