CVE-2023-35017

Severity
5.9MEDIUM
EPSS
0.0%
top 92.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 29

Description

IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtained by an attacker using man in the middle techniques.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
IBM Security Verify Governance information2025-01-29
GHSA
GHSA-527h-22gm-4m9r: IBM Security Verify Governance 102025-01-29