IBM Security Access Manager Container 10.0.0.0 through 10.0.6.1 does not require that docker images should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 261196.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7106586 | Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/261196 | VDB Entry Vendor Advisory |
Configurations
History
10 Feb 2024, 04:01
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:ibm:security_access_manager_container:*:*:*:*:*:*:*:* | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/261196 - VDB Entry, Vendor Advisory | |
References | () https://www.ibm.com/support/pages/node/7106586 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
First Time |
Ibm
Ibm security Access Manager Container |
07 Feb 2024, 17:38
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-07 17:15
Updated : 2024-02-10 04:01
NVD link : CVE-2023-38369
Mitre link : CVE-2023-38369
JSON object : View
Products Affected
ibm
- security_access_manager_container
CWE
CWE-521
Weak Password Requirements