CVE-2018-1956: High severity ibm security identity manager vulnerability
IBM Security Identity Manager 6.0.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 153628.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2018-1956?
CVE-2018-1956 is a vulnerability in IBM Security Identity Manager 6.0.0 that allows attackers to compromise user accounts by not requiring strong passwords by default.
How does CVE-2018-1956 affect IBM Security Identity Manager?
CVE-2018-1956 affects IBM Security Identity Manager 6.0.0 by not enforcing strong passwords for user accounts by default.
What is the severity of CVE-2018-1956?
CVE-2018-1956 has a severity rating of 7.5, which is considered high.
How can attackers exploit CVE-2018-1956?
Attackers can exploit CVE-2018-1956 by taking advantage of the lack of strong password requirements in IBM Security Identity Manager 6.0.0.
What is the Common Weakness Enumeration (CWE) for CVE-2018-1956?
The Common Weakness Enumeration (CWE) for CVE-2018-1956 is CWE-521.