IBM Security Guardium Insights 2.0.2

CPE Details

IBM Security Guardium Insights 2.0.2
2.0.2
2020-08-25
12h44 +00:00
2020-08-25
12h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ibm:security_guardium_insights:2.0.2:*:*:*:*:*:*:*

Informations

Vendor

ibm

Product

security_guardium_insights

Version

2.0.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-4604 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 stores user credentials in plain in clear text which can be read by a local privileged user. IBM X-Force ID: 184861.
4.4
Medium
CVE-2020-4602 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 184836.
4.4
Medium
CVE-2020-4600 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184832.
5.3
Medium
CVE-2020-4599 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 184824.
5.3
Medium
CVE-2020-4597 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by planting this link in a site the user goes to. The cookie will be sent to the insecure link and the attacker can then obtain the cookie value by snooping the traffic. IBM X-Force ID: 184822.
4.3
Medium
CVE-2020-4596 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 184812.
7.5
High
CVE-2020-4595 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 184819.
7.5
High
CVE-2020-4594 2021-01-13 18h10 +00:00 IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 184800.
7.5
High