CVE-2012-5770

CWE-163 documents3 sources
Severity
5.8MEDIUM
EPSS
0.3%
top 50.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 6
Latest updateMay 17

Description

The SSL configuration in IBM Tivoli Application Dependency Discovery Manager (TADDM) 7.2.x before 7.2.1.4 supports the MD5 hash algorithm, which makes it easier for man-in-the-middle attackers to spoof servers and decrypt network traffic via a brute-force attack.

CVSS vector

AV:N/AC:M/C:P/I:P/A:NExploitability: 8.6 | Impact: 4.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-wg32-p6mg-39jj: The SSL configuration in IBM Tivoli Application Dependency Discovery Manager (TADDM) 72022-05-17
CVEList
CVE-2012-5770: The SSL configuration in IBM Tivoli Application Dependency Discovery Manager (TADDM) 72013-03-06
CVE-2012-5770 (MEDIUM CVSS 5.8) | The SSL configuration in IBM Tivoli | cvebase.io