PT-2016-4092 · Ibm · Ibm Security Network Protection+1
Published
2016-01-18
·
Updated
2016-12-07
·
CVE-2016-0201
CVSS v3.1
5.9
Medium
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Security Network Protection versions 5.3.1 through 5.3.1.6
IBM Security Network Protection version 5.3.2
Description
The issue allows remote attackers to discover credentials by triggering an MD5 collision.
Recommendations
For IBM Security Network Protection versions 5.3.1 through 5.3.1.6, update to version 5.3.1.7 or later.
For IBM Security Network Protection version 5.3.2, update to a version that includes the fix for this issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Aix
Ibm Security Network Protection