CVE-2012-5770: Medium severity ibm tivoli application dependency discovery manager vulnerability
The SSL configuration in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.x before 7.2.1.4 supports the MD5 hash algorithm, which makes it easier for man-in-the-middle attackers to spoof servers and decrypt network traffic via a brute-force attack.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5770?
CVE-2012-5770 is rated as a medium severity vulnerability due to its potential for man-in-the-middle attacks.
How do I fix CVE-2012-5770?
To fix CVE-2012-5770, upgrade IBM Tivoli Application Dependency Discovery Manager to version 7.2.1.4 or later.
What types of attacks are possible with CVE-2012-5770?
CVE-2012-5770 allows man-in-the-middle attackers to spoof servers and potentially decrypt network traffic.
Which versions of IBM Tivoli Application Dependency Discovery Manager are affected by CVE-2012-5770?
CVE-2012-5770 affects IBM Tivoli Application Dependency Discovery Manager versions 7.2.0.0, 7.2.1, and 7.2.1.3.
What hash algorithm does CVE-2012-5770 exploit?
CVE-2012-5770 exploits the use of the MD5 hash algorithm in the SSL configuration.