First published: Wed Feb 28 2024(Updated: )
IBM Engineering Requirements Management DOORS 9.7.2.7 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 273336.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Engineering Requirements Management DOORS Web Access | <=9.7.2.7 | |
IBM Rational DOORS Web Access | <=9.7.2.7 | |
IBM Engineering Requirements Management DOORS Web Access | =9.7.2.7 | |
IBM Rational DOORS Web Access | =9.7.2.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50305 is classified as a security vulnerability that increases the risk of account compromise due to weak password policies.
To mitigate CVE-2023-50305, ensure that strong password policies are enforced for all user accounts in IBM Engineering Requirements Management DOORS 9.7.2.7.
CVE-2023-50305 affects IBM Engineering Requirements Management DOORS and DOORS Web Access, specifically versions up to and including 9.7.2.7.
CVE-2023-50305 is a vulnerability related to insufficient password strength requirements, making user accounts more susceptible to unauthorized access.
Users and organizations using IBM Engineering Requirements Management DOORS version 9.7.2.7 face potential security risks due to CVE-2023-50305.