First published: Tue Aug 11 2020(Updated: )
IBM Guardium Data Encryption (GDE) discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Guardium Data Encryption | =3.0.0.2 | |
Ibm Guardium For Cloud Key Management | <1.6.2 | |
<=3.0.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
IBM Guardium Data Encryption (GDE) 3.0.0.2 discloses sensitive information to unauthorized users.
The vulnerability allows unauthorized users to access sensitive information, potentially leading to further attacks on the system.
The severity of the vulnerability is medium with a CVSS score of 5.3.
Yes, IBM has provided a fix for the vulnerability. Please refer to the IBM support page for more information.
You can find more information about the vulnerability on the IBM X-Force ID page and the IBM support page.