CVE-2023-35017

IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques.
References
Link Resource
https://www.ibm.com/support/pages/node/7172423 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:security_verify_governance:10.0.2:*:*:*:*:*:*:*

History

04 Mar 2025, 21:58

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:security_verify_governance:10.0.2:*:*:*:*:*:*:*
First Time Ibm
Ibm security Verify Governance
Summary
  • (es) IBM Security Verify Governance 10.0.2 Identity Manager puede transmitir credenciales de usuario en texto plano que un atacante podría obtener mediante técnicas de intermediario.
References () https://www.ibm.com/support/pages/node/7172423 - () https://www.ibm.com/support/pages/node/7172423 - Vendor Advisory

29 Jan 2025, 01:15

Type Values Removed Values Added
Summary (en) IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques. (en) IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques.

29 Jan 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-29 00:15

Updated : 2025-03-04 21:58


NVD link : CVE-2023-35017

Mitre link : CVE-2023-35017

CVE.ORG link : CVE-2023-35017


JSON object : View

Products Affected

ibm

  • security_verify_governance
CWE
CWE-319

Cleartext Transmission of Sensitive Information