CVE-2017-1473: Weak Encryption
IBM Security Access Manager Appliance 8.0.0 through 8.0.1.6 and 9.0.0 through 9.0.3.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 128605.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-1473?
CVE-2017-1473 is a vulnerability in IBM Security Access Manager Appliance version 8.0.0 through 8.0.1.6 and 9.0.0 through 9.0.3.1 that uses weaker than expected cryptographic algorithms.
What is the severity of CVE-2017-1473?
The severity of CVE-2017-1473 is high with a CVSS score of 7.5.
How can I check if I am affected by CVE-2017-1473?
You can check if you are affected by CVE-2017-1473 by verifying your IBM Security Access Manager Appliance version. If you are using version 8.0.0 through 8.0.1.6 or 9.0.0 through 9.0.3.1, you may be affected.
What is the impact of CVE-2017-1473?
CVE-2017-1473 could allow an attacker to decrypt highly sensitive information.
How do I fix CVE-2017-1473?
To fix CVE-2017-1473, it is recommended to update your IBM Security Access Manager Appliance to a version that does not use weaker cryptographic algorithms.