IBM Security Guardium 10.5, 10.6, 11.0, 11.1, 11.2, 11.3, and 11.4 stores user credentials in plain clear text which can be read by a local privileged user. IBM X-Force ID: 215587.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Security_guardium | Ibm | 11.0 (including) | 11.4 (including) |
Security_guardium | Ibm | 10.5 (including) | 10.5 (including) |
Security_guardium | Ibm | 10.6 (including) | 10.6 (including) |