CVE-2018-1959: High severity IBM Security Identity Manager vulnerability
Published Jan 22, 2019
·Updated
IBM Security Identity Manager 7.0.1 Virtual Appliance contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 153633.
Affected Software
1 affected component
IBM Security Identity Manager>=7.0.1<=7.0.1.10
Remediation
Patch Available
Event History
Jan 24, 2019
CVE Published
04:29 PM
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2018-1959.
2
What is the severity of CVE-2018-1959?
The severity of CVE-2018-1959 is high with a CVSS score of 7.8.
3
What is the affected software?
The affected software is IBM Security Identity Manager 7.0.1 Virtual Appliance.
4
What is the impact of this vulnerability?
This vulnerability allows an attacker to gain unauthorized access to sensitive information or perform unauthorized actions.
5
How can I fix this vulnerability?
To fix this vulnerability, apply the patches or updates provided by IBM.