ZeroHour

CVE-2022-35720

CVSS 3.1
5.5 medium
EPSS
<1%p2
Published
()
Modified
Description

IBM Sterling External Authentication Server 6.1.0 and IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic algorithms during installation that could allow a local attacker to decrypt sensitive information. IBM X-Force ID: 231373.

Vendors
ibm
Products
sterling external authentication server, sterling secure proxy
Weakness
CWE-327
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.