First published: Tue Feb 27 2018(Updated: )
IBM Security Guardium Big Data Intelligence (SonarG) 3.1 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 137772.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Guardium Big Data Intelligence | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1372 is classified as a medium severity vulnerability due to its impact on user account security.
Fix CVE-2018-1372 by implementing strong password policies and updating your IBM Security Guardium Big Data Intelligence version to one that requires strong passwords.
The primary impact of CVE-2018-1372 is account compromise due to weak password requirements, leading to unauthorized access.
CVE-2018-1372 affects users of IBM Security Guardium Big Data Intelligence version 3.1.
If you are using IBM Security Guardium Big Data Intelligence 3.1, ensure that strong password enforcement is enabled and consider upgrading to a patched version.