CVE-2017-1411: High severity ibm security identity governance and intelligence vulnerability
IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 127399.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1411?
CVE-2017-1411 has a medium severity due to the lack of strong password requirements which can lead to account compromises.
How do I fix CVE-2017-1411?
To fix CVE-2017-1411, configure your IBM Security Identity Governance Virtual Appliance to enforce strong password policies.
Which versions of IBM Security Identity Governance are affected by CVE-2017-1411?
CVE-2017-1411 affects versions 5.2 through 5.2.3.2 of IBM Security Identity Governance.
Can attackers exploit CVE-2017-1411 easily?
Yes, attackers can exploit CVE-2017-1411 easily due to the absence of strong password requirements.
What type of risk does CVE-2017-1411 pose?
CVE-2017-1411 poses a risk of unauthorized access to user accounts and potential data breaches.