Weak Cryptographic Algorithms in IBM Security Guardium Big Data Intelligence
CVE-2020-4254

5.9MEDIUM

Key Information:

Vendor
IBM
Vendor
CVE Published:
16 October 2020

Summary

IBM Security Guardium Big Data Intelligence 1.0 (SonarG) is susceptible to a vulnerability that arises from the use of cryptographic algorithms that are weaker than expected. This flaw can allow an attacker to decrypt highly sensitive information, posing a significant risk to data integrity and confidentiality. Ensuring the use of robust cryptographic methods is critical to maintaining the security of sensitive data within the enterprise.

Affected Version(s)

Security Guardium Big Data Intelligence 1.0

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.