IBM Rational Focal Point 6.4.0, 6.4.1, 6.5.1, 6.5.2, and 6.6.0 use a weak algorithm to hash passwords, which makes it easier for context-dependent attackers to obtain cleartext values via a brute-force attack. IBM X-Force ID: 90704.
2018-04-27T16:29:00.550
2024-11-21T02:02:53.657
Modified
CVSSv3.0: 5.3 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:N/A:N
3.9
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | rational_focal_point | 6.4 | Yes |
Application | ibm | rational_focal_point | 6.4.1 | Yes |
Application | ibm | rational_focal_point | 6.5.1 | Yes |
Application | ibm | rational_focal_point | 6.5.2 | Yes |
Application | ibm | rational_focal_point | 6.6 | Yes |