IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 transmits sensitive information in plain text which could be obtained by an attacker using man in the middle techniques. IBM X-Force ID: 179428.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Verify_gateway | Ibm | 1.0.0 (including) | 1.0.0 (including) |
| Verify_gateway | Ibm | 1.0.1 (including) | 1.0.1 (including) |