IBM WebSphere Commerce 7.0 does not properly encrypt data in a database, which makes it easier for local users to obtain sensitive information by defeating cryptographic protection mechanisms.
2010-02-05T22:30:02.297
2025-04-11T00:51:21.963
Deferred
CVSSv2: 1.5 (LOW)
AV:L/AC:M/Au:S/C:P/I:N/A:N
2.7
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_commerce | 7.0 | Yes |