First published: Tue Jun 25 2019(Updated: )
IBM Security Access Manager 9.0.1 through 9.0.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 158572.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Access Manager | >=9.0.1<=9.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for IBM Security Access Manager is CVE-2019-4156.
The severity of CVE-2019-4156 is medium with a CVSS score of 5.9.
IBM Security Access Manager versions 9.0.1 through 9.0.6 are affected by CVE-2019-4156.
CVE-2019-4156 allows an attacker to decrypt highly sensitive information.
To fix CVE-2019-4156, update IBM Security Access Manager to a version higher than 9.0.6 that uses stronger cryptographic algorithms.