Weak Cryptography in IBM Security Guardium Insights
CVE-2020-4174

5.9MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
27 August 2020

Summary

IBM Security Guardium Insights version 2.0.1 is susceptible to vulnerabilities due to the use of cryptographic algorithms that do not meet modern standards. This weakness can potentially allow attackers to decrypt highly sensitive information, thereby compromising data confidentiality. Organizations using this product should ensure they are on the latest version and implement stricter cryptographic measures to safeguard sensitive data.

Affected Version(s)

Security Guardium Insights 2.0.1

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.