PT-2018-5622 · Ibm · Ibm Security Identity Governance Virtual Appliance
Published
2018-08-06
·
Updated
2019-10-09
·
CVE-2017-1411
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
IBM Security Identity Governance Virtual Appliance versions 5.2 through 5.2.3.2
Description:
The issue makes it easier for attackers to compromise user accounts due to a lack of strong password requirements by default.
Recommendations:
For versions 5.2 through 5.2.3.2, consider enforcing strong password policies to mitigate the risk of account compromise.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Security Identity Governance Virtual Appliance