CVE-2016-0238

Description

IBM Security Guardium 9.0, 9.1, 9.5, 10.0, and 10.1 transmits sensitive data in cleartext in the query of the request. This could allow an attacker to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 110409

Risk Information

Base Score
3.7
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.222

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 10.0Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 9.0Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 9.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 9.5Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.1Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 10.1.2Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234