PT-2017-10304 · Ibm · Ibm Security Identity Manager Virtual Appliance

Published

2017-02-01

·

Updated

2018-05-02

·

CVE-2016-9739

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM Security Identity Manager Virtual Appliance (affected versions not specified)
Description The issue concerns the storage of user credentials in plain text, which can be accessed by a local user. This poses a significant risk as it allows unauthorized individuals to obtain sensitive information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-9739

Affected Products

Ibm Security Identity Manager Virtual Appliance