cbcvebase.
CVE-2018-1742
published 2018-10-08

CVE-2018-1742: IBM Tivoli Key Lifecycle Manager 2.6, 2.7, and 3.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound…

critical9.3CVSS 3.0
AVLACLPRNUINSCCHIHAH
IBM Tivoli Key Lifecycle Manager 2.6, 2.7, and 3.0 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 148421.

Affected

6 ranges
VendorProductVersion rangeFixed in
ibmsecurity_key_lifecycle_manager
ibmsecurity_key_lifecycle_manager
ibmsecurity_key_lifecycle_manager
ibmsecurity_key_lifecycle_manager2.6.0 – 2.6.0.4
ibmsecurity_key_lifecycle_manager2.7.0 – 2.7.0.3
ibmsecurity_key_lifecycle_manager3.0 – 3.0.0.1