IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 transmits sensitive information in plain text which could be obtained by an attacker using man in the middle techniques. IBM X-Force ID: 179428.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Verify_gateway | Ibm | 1.0.0 (including) | 1.0.0 (including) |
Verify_gateway | Ibm | 1.0.1 (including) | 1.0.1 (including) |