First published: Tue Oct 02 2018(Updated: )
IBM Security Guardium EcoSystem 10.5 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 141223.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | =10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1498 is considered a high-severity vulnerability due to the exposure of user credentials.
To fix CVE-2018-1498, ensure that user credentials are stored securely and implement encryption measures.
CVE-2018-1498 affects IBM Security Guardium EcoSystem version 10.5.
Any local user with access to the affected system can exploit CVE-2018-1498 to read stored user credentials.
The consequences of CVE-2018-1498 include unauthorized access to user accounts and potential data breaches.