CVE-2018-1946

IBM Security Identity Governance and Intelligence 5.2 through 5.2.4.1 Virtual Appliance supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties. IBM X-Force ID: 153388.

Published : 2019-02-21 17:29 Updated : 2019-10-09 23:39

5.0
CVSS Score More info
Score 5.0 / 10
5.0

CPE

There is no CPE for this CVE.

CWE

ID Name Description Links
CWE-326 Inadequate Encryption Strength The software stores or transmits sensitive data using an encryption scheme that is theoretically sound, but is not strong enough for the level of protection required. CVE

History of changes

Date Event
2019-02-21 18:51

New CVE