IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 258375.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-39880 | IBM Security Verify Governance 10.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 258375. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 27 Jan 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ibm
Ibm security Verify Governance |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:ibm:security_verify_governance:10.0.2:*:*:*:*:*:*:* | |
Vendors & Products |
Ibm
Ibm security Verify Governance |

Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-08-02T16:37:39.908Z
Reserved: 2023-06-20T02:24:14.838Z
Link: CVE-2023-35888

Updated: 2024-08-02T16:37:39.908Z

Status : Analyzed
Published: 2024-03-20T14:15:08.183
Modified: 2025-01-27T15:18:19.737
Link: CVE-2023-35888

No data.

No data.