CVE-2019-4698: High severity ibm security guardium data encryption vulnerability
IBM Guardium Data Encryption (GDE) does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
Other sources
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 171929.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
CVE-2019-4698
What is the severity of CVE-2019-4698?
The severity of CVE-2019-4698 is high with a severity value of 7.5.
What is affected by CVE-2019-4698?
IBM Guardium Data Encryption (GDE) versions up to and including 3.0.0.2 are affected by CVE-2019-4698.
How does CVE-2019-4698 impact user accounts?
CVE-2019-4698 makes it easier for attackers to compromise user accounts as IBM Guardium Data Encryption (GDE) 3.0.0.2 does not require strong passwords by default.
How can I fix CVE-2019-4698?
To fix CVE-2019-4698, users should ensure that strong passwords are used for IBM Guardium Data Encryption (GDE) accounts.